pfSense CE through 2.6.0 and pfSense Plus before 22.05 allow XSS in the WebGUI via URL Table Alias URL parameters.
2023-02-22T21:15:11.123
2024-11-21T06:58:50.937
Modified
CVSSv3.1: 6.1 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | netgate | pfsense | ≤ 2.6.0 | Yes |
Application | netgate | pfsense | < 22.05 | Yes |