Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
Mythos Previews Build PoC Exploits for Automated Vulner
May 19, 2026
Hackers Actively Exploiting Critical NGIN NGINX Vulnerability
May 18, 2026
Critical n8n Flaws Expose Automation Nodes to Vulnerabilities Full
May 18, 2026
Home/CyberSecurity News/FortiSandbox XSS Flaw Allows Arbitrary Command Vulnerability Attackers
CyberSecurity News

FortiSandbox XSS Flaw Allows Arbitrary Command Vulnerability Attackers

Fortinet has disclosed a high-severity cross-site scripting (XSS) vulnerability impacting its FortiSandbox platform. Tracked as CVE-2025-52436 (FG-IR-25-093), the flaw allows unauthenticated...

Sarah simpson
Sarah simpson
February 10, 2026 2 Min Read
5 0

Fortinet has disclosed a high-severity cross-site scripting (XSS) vulnerability impacting its FortiSandbox platform. Tracked as CVE-2025-52436 (FG-IR-25-093), the flaw allows unauthenticated attackers to execute arbitrary commands on affected systems.

Dubbed an “Improper Neutralization of Input During Web Page Generation” issue (CWE-79), the flaw resides in the graphical user interface (GUI) component and scores a 7.9.

At its core, this reflected XSS vulnerability arises from inadequate input sanitization in web page generation. An attacker crafts malicious requests, typically via the browser’s back button or manipulated parameters, that inject executable JavaScript into the GUI.

Once a victim (like an admin) interacts with the tainted page, the script triggers, escalating to remote code execution (RCE). This grants full command-line access, potentially leading to data exfiltration, lateral movement, or sandbox evasion in malware analysis environments.

Affected Versions and Patches

FortiSandbox PaaS deployments bear the brunt:

Version Series Affected Builds Recommended Action
5.0 5.0.0 to 5.0.1 Upgrade to 5.0.2+
4.4 4.4.0 to 4.4.7 Upgrade to 4.4.8+
4.2 All versions Migrate to fixed release
4.0 All versions Migrate to fixed release

Patches landed in PaaS versions 4.4.8 and 5.0.5. Fortinet urges immediate upgrades, emphasizing exposure mitigation via network segmentation and GUI access restrictions until patched.

Credit goes to Jaguar Perlas of Fortinet’s Burnaby Infosec team for internal discovery. This incident underscores persistent XSS risks in enterprise tools, even sandboxes meant to isolate threats.

Organizations scanning malware or handling sensitive intel should prioritize patching unpatched systems invite command-and-control pivots. Fortinet reports no known exploitation, but the unauthenticated vector demands vigilance.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

AttackCVEExploitMalwarePatchThreatVulnerability

Share Article

Sarah simpson

Sarah simpson

Sarah is a cybersecurity journalist specializing in threat intelligence and malware analysis. With over 8 years of experience covering APT groups, zero-day exploits, and advanced persistent threats, Sarah brings deep technical expertise to breaking cybersecurity news. Previously, she worked as a security researcher at leading threat intelligence firms, where she analyzed malware samples and tracked cybercriminal operations. Sarah holds a Master's degree in Computer Science with a focus on cybersecurity and is a regular contributor to major security conferences.

Previous Post

Ivanti Endpoint Manager Flaw: Remote Arbitrary Data Leak

Next Post

Microsoft Patch Tuesday Feb 2026: February Vulnerabilities

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
CISA Warns: Microsoft Exchange Vulnerability Exploited
May 18, 2026
Avada Builder Flaws Affect 1 Million WordPress Sites with
May 18, 2026
Microsoft Confirms Windows 11 Update Fails With Error 0x800f0922
May 18, 2026
Top Authors
Marcus Rodriguez
Marcus Rodriguez
Jennifer sherman
Jennifer sherman
Sarah simpson
Sarah simpson
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Detects Critical MongoDB CVE-

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
Comparisons
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us