Vulnerabilities
Vulnerable Software
Pfsense:  >> Pfsense  >> 2.4.5  Security Vulnerabilities
/usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP echo call, causing XSS.
CVSS Score
6.1
EPSS Score
0.002
Published
2022-01-26
A stored cross-site scripting (XSS) vulnerability was discovered in pfSense 2.4.5-p1 which allows an authenticated attacker to execute arbitrary web scripts via exploitation of the load_balancer_monitor.php function.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-06-01


Contact Us

Shodan ® - All rights reserved