Race Condition Vulnerability in FortiSandbox Command Shell
CVE-2020-29014
6.3MEDIUM
What is CVE-2020-29014?
A race condition vulnerability in the command shell of FortiSandbox prior to version 3.2.2 can be exploited by authenticated users. By executing a sequence of carefully crafted commands, an attacker may manipulate the execution flow, leading to a state where the system becomes unresponsive. This flaw underscores the importance of proper synchronization when handling concurrent executions.
Affected Version(s)
Fortinet FortiSandbox FortiSandbox before 3.2.2