CVE-2025-67685
3.8LOWA Server-Side Request Forgery (SSRF) vulnerability [CWE-918] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.4, FortiSandbox 4.4 all versions, FortiSandbox 4.2 all versions, FortiSandbox 4.0
게시됨: 1/13/2026업데이트됨: 1/14/2026
설명
A Server-Side Request Forgery (SSRF) vulnerability [CWE-918] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.4, FortiSandbox 4.4 all versions, FortiSandbox 4.2 all versions, FortiSandbox 4.0 all versions may allow an authenticated attacker to proxy internal requests limited to plaintext endpoints only via crafted HTTP requests.
AI 분석AI 기반
영향받는 제품
fortinetfortisandbox
참조
- https://fortiguard.fortinet.com/psirt/FG-IR-25-783Vendor Advisory