CVE-2024-45328: Fortinet FortiSandbox

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

An incorrect authorization vulnerability [CWE-863] in FortiSandbox 4.4.0 through 4.4.6 may allow a low priviledged administrator to execute elevated CLI commands via the GUI console menu.

Affected products

  • Fortinet FortiSandbox: from 4.4.0, before 4.4.7 (fixed in 4.4.7)

Published 2025-03-11. Last modified 2026-06-17.