Netgate

Pfsense

55 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 9.28%
  • Veröffentlicht 01.04.2020 16:15:27
  • Zuletzt bearbeitet 21.11.2024 04:57:57

pfSense before 2.4.5 has stored XSS in system_usermanager_addprivs.php in the WebGUI via the descr parameter (aka full name) of a user.

Exploit
  • EPSS 54.54%
  • Veröffentlicht 26.09.2019 19:15:12
  • Zuletzt bearbeitet 21.11.2024 04:30:56

diag_command.php in pfSense 2.4.4-p3 allows CSRF via the txtCommand or txtRecallBuffer field, as demonstrated by executing OS commands. This occurs because csrf_callback() produces a "CSRF token expired" error and a Try Again button when a CSRF token...

  • EPSS 3.74%
  • Veröffentlicht 26.09.2019 18:15:10
  • Zuletzt bearbeitet 21.11.2024 04:31:20

An issue was discovered in pfSense through 2.4.4-p3. widgets/widgets/picture.widget.php uses the widgetkey parameter directly without sanitization (e.g., a basename call) for a pathname to file_get_contents or file_put_contents.

  • EPSS 2%
  • Veröffentlicht 26.09.2019 18:15:10
  • Zuletzt bearbeitet 21.11.2024 04:31:20

An XSS issue was discovered in pfSense through 2.4.4-p3. In services_captiveportal_mac.php, the username and delmac parameters are displayed without sanitization.

Exploit
  • EPSS 19.61%
  • Veröffentlicht 25.09.2019 16:15:12
  • Zuletzt bearbeitet 21.11.2024 04:31:00

pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value.

Exploit
  • EPSS 3.03%
  • Veröffentlicht 25.06.2019 11:15:10
  • Zuletzt bearbeitet 21.11.2024 04:23:53

In pfSense 2.4.4-p2 and 2.4.4-p3, if it is possible to trick an authenticated administrator into clicking on a button on a phishing page, an attacker can leverage XSS to upload arbitrary executable code, via diag_command.php and rrd_fetch_json.php (t...

  • EPSS 2.56%
  • Veröffentlicht 03.06.2019 03:29:00
  • Zuletzt bearbeitet 21.11.2024 04:23:08

Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and other products, has an XSS issue in apcupsd_status.php.

  • EPSS 5.03%
  • Veröffentlicht 03.06.2019 03:29:00
  • Zuletzt bearbeitet 21.11.2024 04:23:08

Apcupsd 0.3.91_5, as used in pfSense through 2.4.4-RELEASE-p3 and other products, has an Arbitrary Command Execution issue in apcupsd_status.php.

Exploit
  • EPSS 58.58%
  • Veröffentlicht 29.05.2019 19:29:00
  • Zuletzt bearbeitet 21.11.2024 04:22:38

In pfSense 2.4.4-p3, a stored XSS vulnerability occurs when attackers inject a payload into the Name or Description field via an acme_accountkeys_edit.php action. The vulnerability occurs due to input validation errors.

  • EPSS 3.27%
  • Veröffentlicht 20.05.2019 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:21:49

Incorrect access control in the WebUI in OPNsense before version 19.1.8, and pfsense before 2.4.4-p3 allows remote authenticated users to escalate privileges to administrator via a specially crafted request.