Description
Improper input validation vulnerability in pfSense CE and pfSense Plus (pfSense CE software versions prior to 2.6.0 and pfSense Plus software versions prior to 22.01) allows a remote attacker with the privilege to change OpenVPN client or server settings to execute an arbitrary command.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-29200 | Improper input validation vulnerability in pfSense CE and pfSense Plus (pfSense CE software versions prior to 2.6.0 and pfSense Plus software versions prior to 22.01) allows a remote attacker with the privilege to change OpenVPN client or server settings to execute an arbitrary command. |
References
History
No history.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-03T04:07:02.366Z
Reserved: 2022-03-06T00:00:00.000Z
Link: CVE-2022-24299
No data.
Status : Modified
Published: 2022-03-31T08:15:08.297
Modified: 2024-11-21T06:50:07.313
Link: CVE-2022-24299
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD