A reflected Cross-Site-Scripting (XSS) vulnerability in Fortinet FortiSandbox before 3.0 may allow an attacker to execute unauthorized code or commands via the back_url parameter in the file scan component.
| Software | From | Fixed in |
|---|---|---|
| fortinet / fortisandbox | - | 3.0.0 |