CVE-2026-39813
CRITICAL EXPLOITEDFortiSandbox 4.4.0-4.4.8 and 5.0.0-5.0.5 - Path Traversal via '../filedir'
Title source: llmExploitation Summary
CVE-2026-39813 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 2 public exploits from researchers including HORKimhab, 0xBlackash.
AI-analyzed exploit summary The repository lacks actual exploit code or technical details about CVE-2026-39813, instead providing generic setup instructions and a script to download external content. The README is filled with disclaimers and ethical use statements but no substantive vulnerability analysis.
Description
A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8 may allow attacker to escalation of privilege via specially crafted HTTP requests.
Exploits (2)
The repository lacks actual exploit code or technical details about CVE-2026-39813, instead providing generic setup instructions and a script to download external content. The README is filled with disclaimers and ethical use statements but no substantive vulnerability analysis.
This repository provides a detailed technical analysis of CVE-2026-39813, a critical path traversal vulnerability in Fortinet FortiSandbox. It includes root cause analysis, affected versions, impact assessment, and mitigation recommendations.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H