Fortinet FortiSandbox是美国飞塔(Fortinet)公司的一款APT(高级持续性威胁)防护设备。该设备提供双重沙盒技术、动态威胁智能系统、实时控制面板和报告等功能。 Fortinet FortiSandbox 存在安全漏洞,该漏洞源于处理HTTP请求时FortiSandbox的概要文件解析器中存在边界错误。攻击者可利用该漏洞通过发送精心构建的HTTP请求,触发基于堆栈的缓冲区溢出,并在目标系统上执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortinet | FortiSandbox | 3.2.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-25610 | 9.3 CRITICAL | Fortinet FortiOS和FortiProxy 安全漏洞 |
| CVE-2021-26091 | 6.9 MEDIUM | Fortinet FortiMail 安全特征问题特征问题漏洞 |
No comments yet