Sangfor develops a focused portfolio of enterprise security and infrastructure products, including network firewalls, application delivery systems, and endpoint virtualization solutions, that sit on critical network boundaries and administrative access paths. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and recur through command-injection and authentication-bypass weaknesses that are particularly impactful in appliances and management systems where exploitation can yield system-level compromise. Defenders should treat Sangfor advisories as high-priority, especially for internet-exposed appliances and administrative interfaces; live exploitation activity and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sangfor over time
Signals from CVEs in this vendor scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-30806CRITICAL The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an operating system command injection vulnerability. A remote and unauthenticated attacker can execute | Oct 10, 2023 | 9.8 | 64 | NO | NO |
CVE-2023-30805CRITICAL The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an operating system command injection vulnerability. A remote and unauthenticated attacker can execute | Oct 10, 2023 | 9.8 | 64 | NO | NO |
CVE-2025-15503CRITICAL A security flaw has been discovered in Sangfor Operation and Maintenance Management System up to 3.0.8. The impacted element is an unknown function of the file /fort/trust/version/ | Jan 10, 2026 | 9.8 | 44 | NO | YES |
CVE-2025-15501CRITICAL A vulnerability was determined in Sangfor Operation and Maintenance Management System up to 3.0.8. Impacted is the function WriterHandle.getCmd of the file /isomp-protocol/protocol | Jan 9, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-15500CRITICAL A vulnerability was found in Sangfor Operation and Maintenance Management System up to 3.0.8. This issue affects some unknown processing of the file /isomp-protocol/protocol/getHis | Jan 9, 2026 | 9.8 | 38 | NO | NO |
CVE-2026-1324CRITICAL A vulnerability was identified in Sangfor Operation and Maintenance Management System up to 3.0.12. Affected by this issue is the function SessionController of the file /isomp-prot | Jan 22, 2026 | 9.8 | 37 | NO | NO |
CVE-2025-15499CRITICAL A vulnerability has been found in Sangfor Operation and Maintenance Management System up to 3.0.8. This vulnerability affects the function uploadCN of the file VersionController.ja | Jan 9, 2026 | 9.8 | 35 | NO | NO |
CVE-2026-1325CRITICAL A security flaw has been discovered in Sangfor Operation and Maintenance Security Management System up to 3.0.12. This affects the function edit_pwd_mall of the file /fort/login/ed | Jan 22, 2026 | 9.8 | 34 | NO | NO |
CVE-2026-1412CRITICAL A vulnerability has been found in Sangfor Operation and Maintenance Security Management System up to 3.0.12. The impacted element is an unknown function of the file /fort/audit/get | Jan 26, 2026 | 9.8 | 33 | NO | NO |
CVE-2025-15502CRITICAL A vulnerability was identified in Sangfor Operation and Maintenance Management System up to 3.0.8. The affected element is the function SessionController of the file /isomp-protoco | Jan 10, 2026 | 9.8 | 33 | NO | NO |
Signals from CVEs in this vendor scope (18 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sangfor.
Media articles that mention a CVE ID that affects a product developed by Sangfor — matched by CVE ID, not by vendor name.