Vulnerability Details CVE-2026-27316
A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1 through 5.0.5 may allow an authenticathed administrator to read LDAP server credentials via client-side inspection.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.6%
CVSS Severity
CVSS v3 Score 2.7
Products affected by CVE-2026-27316
-
cpe:2.3:a:fortinet:fortisandbox:4.4.0
-
cpe:2.3:a:fortinet:fortisandbox:4.4.1
-
cpe:2.3:a:fortinet:fortisandbox:4.4.2
-
cpe:2.3:a:fortinet:fortisandbox:4.4.3
-
cpe:2.3:a:fortinet:fortisandbox:4.4.4
-
cpe:2.3:a:fortinet:fortisandbox:4.4.5
-
cpe:2.3:a:fortinet:fortisandbox:4.4.6
-
cpe:2.3:a:fortinet:fortisandbox:4.4.7
-
cpe:2.3:a:fortinet:fortisandbox:4.4.8
-
cpe:2.3:a:fortinet:fortisandbox:4.4.9
-
cpe:2.3:a:fortinet:fortisandbox:5.0.0
-
cpe:2.3:a:fortinet:fortisandbox:5.0.1
-
cpe:2.3:a:fortinet:fortisandbox:5.0.2
-
cpe:2.3:a:fortinet:fortisandbox:5.0.3
-
cpe:2.3:a:fortinet:fortisandbox:5.0.4
-
cpe:2.3:a:fortinet:fortisandbox:5.0.5
-
cpe:2.3:a:fortinet:fortisandbox_cloud:5.0.4
-
cpe:2.3:a:fortinet:fortisandbox_cloud:5.0.5