{"api_version":"1","generated_at":"2026-07-24T02:25:20+00:00","cve":"CVE-2021-26096","urls":{"html":"https://cve.report/CVE-2021-26096","api":"https://cve.report/api/cve/CVE-2021-26096.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2021-26096","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2021-26096"},"summary":{"title":"CVE-2021-26096","description":"Multiple instances of heap-based buffer overflow in the command shell of FortiSandbox before 4.0.0 may allow an authenticated attacker to manipulate memory and alter its content by means of specifically crafted command line arguments.","state":"PUBLIC","assigner":"psirt@fortinet.com","published_at":"2021-08-04 18:15:00","updated_at":"2021-08-11 18:13:00"},"problem_types":["CWE-787"],"metrics":[],"references":[{"url":"https://fortiguard.com/advisory/FG-IR-20-188","name":"https://fortiguard.com/advisory/FG-IR-20-188","refsource":"CONFIRM","tags":[],"title":"FortiSandbox - Multiple heap corruption vulnerabilities in command shell | FortiGuard","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2021-26096","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2021-26096","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2021","cve_id":"26096","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"fortinet","cpe5":"fortisandbox","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2021","cve_id":"26096","vulnerable":"1","versionEndIncluding":"3.1.4","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"fortinet","cpe5":"fortisandbox","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"data_type":"CVE","data_format":"MITRE","data_version":"4.0","CVE_data_meta":{"ID":"CVE-2021-26096","ASSIGNER":"psirt@fortinet.com","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"vendor_name":"Fortinet","product":{"product_data":[{"product_name":"Fortinet FortiSandbox","version":{"version_data":[{"version_value":"FortiSandbox before 4.0.0"}]}}]}}]}},"impact":{"cvss":{"attackComplexity":"High","attackVector":"Network","availabilityImpact":"Low","baseScore":6.4,"baseSeverity":"Medium","confidentialityImpact":"Low","integrityImpact":"High","privilegesRequired":"Low","scope":"Unchanged","userInteraction":"None","vectorString":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:L/E:X/RL:X/RC:X","version":"3.1"}},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Execute unauthorized code or commands"}]}]},"references":{"reference_data":[{"refsource":"CONFIRM","name":"https://fortiguard.com/advisory/FG-IR-20-188","url":"https://fortiguard.com/advisory/FG-IR-20-188"}]},"description":{"description_data":[{"lang":"eng","value":"Multiple instances of heap-based buffer overflow in the command shell of FortiSandbox before 4.0.0 may allow an authenticated attacker to manipulate memory and alter its content by means of specifically crafted command line arguments."}]}},"nvd":{"publishedDate":"2021-08-04 18:15:00","lastModifiedDate":"2021-08-11 18:13:00","problem_types":["CWE-787"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:P/I:P/A:P","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL","baseScore":6.5},"severity":"MEDIUM","exploitabilityScore":8,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*","versionEndIncluding":"3.1.4","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*","versionStartIncluding":"3.2.0","versionEndExcluding":"3.2.3","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2021","CveId":"26096","Ordinal":"201041","Title":"CVE-2021-26096","CVE":"CVE-2021-26096","Year":"2021"},"notes":[{"CveYear":"2021","CveId":"26096","Ordinal":"1","NoteData":"Multiple instances of heap-based buffer overflow in the command shell of FortiSandbox before 4.0.0 may allow an authenticated attacker to manipulate memory and alter its content by means of specifically crafted command line arguments.","Type":"Description","Title":null},{"CveYear":"2021","CveId":"26096","Ordinal":"2","NoteData":"2021-08-04","Type":"Other","Title":"Published"},{"CveYear":"2021","CveId":"26096","Ordinal":"3","NoteData":"2021-08-04","Type":"Other","Title":"Modified"}]}}}