Cross-Site Scripting Vulnerability in Fortinet FortiSandbox Products
CVE-2025-53608
4.6MEDIUM
What is CVE-2025-53608?
The vulnerability in Fortinet FortiSandbox allows authenticated privileged attackers to exploit improper input neutrality during web page generation. By crafting specific requests, these attackers can execute arbitrary code, potentially compromising the integrity and confidentiality of affected systems. It is critical for organizations utilizing FortiSandbox to implement appropriate security measures to mitigate this risk and safeguard their web applications.
Affected Version(s)
FortiSandbox 5.0.0 <= 5.0.2
FortiSandbox 4.4.0 <= 4.4.7
FortiSandbox 4.2.1 <= 4.2.8