CVE-2017-3132: Fortinet FortiOS < 5.6.0 - Cross-Site Scripting

HoneyLabs honeypots recorded 2 probes matching CVE-2017-3132 from 1 distinct source IP addresses in the last 7 days. Severity is rated medium.

Request paths that identify it

  • /p/user/ftoken/activate/user/guest/?action=%3C/script%3E%3Cscript%3Ealert(document.domain)%3C/script%3E%3Cscript%3E

Addresses probing it

Source IPProbesNetworkCountry
85.209.88.762NovoServe B.V.The Netherlands

Networks it comes from

ASNOrganisationProbesSource IPs
AS204601NovoServe B.V.21

Captured requests

  • /p/user/ftoken/activate/user/guest/?action=%3C/script%3E%3Cscript%3Ealert(document.domain)%3C/script%3E%3Cscript%3E

HTTP client fingerprints (JA4H)

  • ge11nn05en_813e32c09d15

CVE report

CVE report

Open a specific CVE from the CVE tracker.