CVE-2017-3132: Fortinet FortiOS

Medium severity, CVSS 6.1. EPSS: 8.1% chance of exploitation in the next 30 days.

A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.6.0 and earlier allows attackers to Execute unauthorized code or commands via the action input during the activation of a FortiToken.

Affected products

  • Fortinet FortiOS: up to and including 5.6.0

Published 2017-09-12. Last modified 2026-06-17.