CVE-2017-3129: Fortinet FortiWeb
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
A Cross-Site Scripting vulnerability in Fortinet FortiWeb versions 5.7.1 and below allows attacker to execute unauthorized code or commands via an improperly sanitized POST parameter in the FortiWeb Site Publisher feature.
Affected products
- Fortinet FortiWeb: up to and including 5.7.1
Published 2017-05-27. Last modified 2026-06-17.