CVE-2026-27316
published 2026-04-14CVE-2026-27316: A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1…
PriorityP412low2.7CVSS 3.1
AVNACLPRHUINSUCLINAN
EPSS
0.30%
22.4th percentile
A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1 through 5.0.5 may allow an authenticathed administrator to read LDAP server credentials via client-side inspection.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortinet | — | — |
| fortinet | fortisandbox | — | — |
| fortinet | fortisandbox | >= 4.4.0 < 5.0.6 | 5.0.6 |
| fortinet | fortisandbox | 4.4.0 – 4.4.9 | — |
| fortinet | fortisandbox | 5.0.0 – 5.0.5 | — |
| fortinet | fortisandbox_cloud | — | — |
| fortinet | fortisandbox_cloud | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | — | — |
| fortinet | fortisandbox_paas | 5.0.1 – 5.0.5 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Fortinet
Credential disclosure in LDAP configuration web page.
vendor_fortinet·2026-04-14·CVSS 2.7
CVE-2026-27316 [LOW] CWE-522 Credential disclosure in LDAP configuration web page.
FG-IR-26-113: Credential disclosure in LDAP configuration web page.
A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1 through 5.0.5 may allow an authenticathed administrator to read LDAP server credentials via client-side inspection.
CVEs: CVE-2026-27316
CWEs: CWE-522
CVSS: 2.7 (low)
Affected products: FortiSandbox, Fortinet
GHSA
GHSA-jp5m-x7cp-gj98: A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5
ghsa_unreviewed·2026-04-14
CVE-2026-27316 [LOW] CWE-522 GHSA-jp5m-x7cp-gj98: A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5
A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1 through 5.0.5 may allow an authenticathed administrator to read LDAP server credentials via client-side inspection.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-04-14
Published