CVE-2025-34177
- EPSS 0.85%
- Veröffentlicht 09.09.2025 20:19:09
- Zuletzt bearbeitet 14.07.2026 23:17:22
In pfSense CE /suricata/suricata_flow_stream.php, the value of the policy_name parameter is not sanitized of HTML-related strings/characters before being directly displayed. This can result in stored cross-site scripting. The attacker must be authent...
CVE-2025-34176
- EPSS 14.85%
- Veröffentlicht 09.09.2025 20:14:37
- Zuletzt bearbeitet 14.07.2026 23:17:21
In pfSense CE /suricata/suricata_ip_reputation.php, the value of the iplist parameter is not sanitized of directory traversal-related strings/characters. This value is directly used in a file existence check operation. While the contents of the file ...
CVE-2025-34175
- EPSS 15.78%
- Veröffentlicht 09.09.2025 20:09:50
- Zuletzt bearbeitet 14.07.2026 23:17:21
In pfSense CE /usr/local/www/suricata/suricata_filecheck.php, the value of the filehash parameter is directly displayed without sanitizing for HTML-related characters/strings. This can result in reflected cross-site scripting if the victim is authent...
CVE-2025-34174
- EPSS 10.5%
- Veröffentlicht 09.09.2025 20:02:05
- Zuletzt bearbeitet 10.10.2025 18:47:06
In pfSense CE /usr/local/www/status_traffic_totals.php, the value of the start-day parameter is not ensured to be a numeric value or sanitized of HTML-related characters/strings before being directly displayed in the input box. This value can be save...
CVE-2025-34173
- EPSS 0.9%
- Veröffentlicht 09.09.2025 19:59:14
- Zuletzt bearbeitet 14.07.2026 23:17:21
In pfSense CE /usr/local/www/snort/snort_ip_reputation.php, the value of the iplist parameter is not sanitized of directory traversal-related characters/strings before being used to check if a file exists. While the contents of the file cannot be rea...
CVE-2025-34172
- EPSS 1.03%
- Veröffentlicht 09.09.2025 19:43:30
- Zuletzt bearbeitet 14.07.2026 23:17:21
In pfSense CE /usr/local/www/haproxy/haproxy_stats.php, the value of the showsticktablecontent parameter is displayed after being read from HTTP GET requests. This can enable reflected cross-site scripting when the victim is authenticated.
CVE-2024-57273
- EPSS 1.24%
- Veröffentlicht 14.05.2025 00:00:00
- Zuletzt bearbeitet 05.07.2026 01:21:16
Netgate pfSense CE (prior to 2.8.0 beta release) and corresponding Plus builds is vulnerable to Cross-site scripting (XSS) in the Automatic Configuration Backup (ACB) service, allowing remote attackers to execute arbitrary JavaScript, delete backups,...
CVE-2024-54779
- EPSS 8.28%
- Veröffentlicht 14.05.2025 00:00:00
- Zuletzt bearbeitet 23.06.2025 14:51:38
Netgate pfSense CE (prior to 2.8.0 beta release) and corresponding Plus builds is vulnerable to Cross Site Scripting (XSS) in widgets/log.widget.php.
CVE-2024-54780
- EPSS 12.15%
- Veröffentlicht 14.05.2025 00:00:00
- Zuletzt bearbeitet 13.06.2025 13:03:51
Netgate pfSense CE (prior to 2.8.0 beta release) and corresponding Plus builds are vulnerable to command injection in the OpenVPN widget due to improper sanitization of user-supplied input to the OpenVPN management interface. An authenticated attacke...
CVE-2023-48795
- EPSS 93.31%
- Veröffentlicht 18.12.2023 16:15:10
- Zuletzt bearbeitet 12.05.2026 11:16:15
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client a...