CVE-2026-84387

HIGH

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fortinet FortiSandbox. Authentication is required to exploit this vulnerability. The ZDI has assign...

Affects 1 product across 1 vendor.

CVSS 3.x7.2
EPSS1.4%
Percentile71th
PatchUnknown
◆ AI Analysis — automated analysis, not human-reviewed

A high severity vulnerability (CVE-2026-84387) affects the target system. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fortinet FortiSandbox. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assig...

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2026-84387?
A high severity vulnerability (CVE-2026-84387) affects the target system. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fortinet FortiSandbox. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assig...
What is the CVSS score for CVE-2026-84387?
CVE-2026-84387 has CVSS 7.2 (High). Vector: None. EPSS: 1.4%.
Is CVE-2026-84387 actively exploited?
No confirmed active exploitation of CVE-2026-84387 as of 2026-09-10.
How do I remediate CVE-2026-84387?
Apply vendor patches for CVE-2026-84387. Monitor Fortinet advisories.
What systems are affected by CVE-2026-84387?
CVE-2026-84387 affects: Fortinet.
Vulnerability Details
CVE IDCVE-2026-84387
Published2026-09-09
Last Modified2026-09-09
ICS Relevance55%
SourceZDI
Official Description

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fortinet FortiSandbox. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-84387.

Source: NIST NVD / MITRE CVE Database

Affected Products
VendorProductFixed Version
Fortinet Fortinet FortiSandbox —
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: September 2026 | Threat Age: 19 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
Related CVEs affecting Fortinet
CVE-2005-3057 10.0 The FTP component in FortiGate 2.8 running FortiOS 2.8MR10 and v3beta, and ot... CVE-2017-7336 9.8 A hard-coded account named 'upgrade' in Fortinet FortiWLM 8.3.0 and lower ver... CVE-2018-13379 9.8 An Improper Limitation of a Pathname to a Restricted Directory ("Path Travers... CVE-2021-32586 9.8 An improper input validation vulnerability in the web server CGI facilities o... CVE-2022-33874 9.8 An improper neutralization of special elements used in an OS Command ('OS Com...
View all Fortinet CVEs →

ICS/OT Vulnerability Intelligence for Your Environment

BreachSpider tracks 366,000+ CVEs and matches them to your ICS/OT assets by exact version, with AI analysis, NERC CIP mapping, and vendor PSIRT contacts.

Create a free account →