← Back

Pfsense Plus

pfsense_plus

Vendor: Pfsense • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Pfsense
2Pfsense
Pfsense Plus
Nov 21, 2024
Jan 26, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
/usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP echo call, causing XSS.