> Unauthenticated Control of NAT Rules Leading to Exposure of Sensitive Information
[DATE: 08/09/2026 07:00]
[LANGUAGE: EN]
CVSSv3 Score:
8.9
An improper access control vulnerability [CWE-284] in FortiSandbox, FortiSandbox Cloud and FortiSandbox PaaS WEB UI may allow an unauthenticated attacker to access sensitive information via crafted HTTP requests.
Revised on 2026-09-08 00:00:00