Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Low
CVE-2023-27253
Disclosure Date: March 17, 2023 (last updated October 08, 2023)
A command injection vulnerability in the function restore_rrddata() of Netgate pfSense v2.7.0 allows authenticated attackers to execute arbitrary commands via manipulating the contents of an XML file supplied to the component config.xml.
2
Attacker Value
Unknown
CVE-2023-42327
Disclosure Date: November 14, 2023 (last updated November 17, 2023)
Cross Site Scripting (XSS) vulnerability in Netgate pfSense v.2.7.0 allows a remote attacker to gain privileges via a crafted URL to the getserviceproviders.php page.
0
Attacker Value
Unknown
CVE-2023-42325
Disclosure Date: November 14, 2023 (last updated November 17, 2023)
Cross Site Scripting (XSS) vulnerability in Netgate pfSense v.2.7.0 allows a remote attacker to gain privileges via a crafted url to the status_logs_filter_dynamic.php page.
0