Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in the WebGUI in pfSense before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the zone parameter in a del action to services_captiveportal_zones.php.
Software | From | Fixed in |
---|---|---|
netgate / pfsense | - | 2.2.2.x |