pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.204
EPSS Ranking 95.2%