← Home

Unauthenticated Control of NAT Rules Leading to Exposure of Sensitive Information

CVEs

CVECVSSCWEExploitation
CVE-2026-26084 8.9 CWE-284: Improper Access Control Not observed in the wild

Affected Products

ProductAffected versionsFixed version
FortiSandbox FortiSandbox 5.2 Not specified by vendor
FortiSandbox FortiSandbox 5.0 Not specified by vendor
FortiSandbox FortiSandbox 4.4 Not specified by vendor
FortiSandbox Cloud FortiSandbox Cloud 5.0 Not specified by vendor
FortiSandbox Cloud FortiSandbox Cloud 4.4 Not specified by vendor
FortiSandbox PaaS FortiSandbox PaaS 5.2 Not specified by vendor
FortiSandbox PaaS FortiSandbox PaaS 5.0 Not specified by vendor