FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
kdharan
Staff
Staff
Article Id 379581
Description This article describes the General system event logs and notices multiple times the system event logs with the JSconsole UI.
Scope FortiGate.
Solution

JSconsole is known as JavaScript console access, and this is a user interface. JSConsole user interface (UI) is CLI console access on the GUI interface as shown in the below picture :

 

JSconsoleUI.png

 

  • When the console opens, 'admin login successful', the log is enabled.
  • When the console is closed, the 'Admin logout successful' log is enabled, reference goes through the attached screenshot:

 

JSCONSOLE-1.png

 

in the log, should check whether the source IP address belongs to a legitimate user or not. If the source IP is anonymous or unknown, then it belongs to the vulnerability 'Authentication bypass in Node.js web socket module and CSF requests' and it is a critical vulnerability.

and also the CVE ID for CVE-2025-24472 and CVE-2024-55591. This issue was fixed in the v7.0.17 and above firmware version.


For more details regarding the vulnerability and the workaround refer to the below document:

https://www.fortiguard.com/psirt/FG-IR-24-535

Contributors