5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N/E:P/RL:X/RC:C
Description
An Improper Isolation or Compartmentalization vulnerability [CWE-653] in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.7, FortiSandbox 4.2 all versions, FortiSandbox 4.0 all versions may allow an unauthenticated attacker to evade the sandboxing scan via a crafted file.
Basic Information
ID
CVE-2025-46215
Source
fortinet
Published
Nov 18, 2025 at 17:01
Modified
Nov 18, 2025 at 20:04
Affected Product
Vendor
Fortinet
Product
FortiSandbox
Version
5.0.0
Affected Versions
Fortinet FortiSandbox 5.0.0
Fortinet FortiSandbox 4.4.0
Fortinet FortiSandbox 4.2.0
Fortinet FortiSandbox 4.0.0
Fortinet FortiSandbox 4.4.0
Fortinet FortiSandbox 4.2.0
Fortinet FortiSandbox 4.0.0