Description | This article describes the General system event logs and notices multiple times the system event logs with the JSconsole UI. |
Scope | FortiGate. |
Solution |
JSconsole is known as JavaScript console access, and this is a user interface. JSConsole user interface (UI) is CLI console access on the GUI interface as shown in the below picture :
in the log, should check whether the source IP address belongs to a legitimate user or not. If the source IP is anonymous or unknown, then it belongs to the vulnerability 'Authentication bypass in Node.js web socket module and CSF requests' and it is a critical vulnerability. and also the CVE ID for CVE-2025-24472 and CVE-2024-55591. This issue was fixed in the v7.0.17 and above firmware version.
|