Total vulnerabilities in the database
Cross Site Scripting (XSS) vulnerability in Netgate pf Sense 2.4.4-Release-p3 and Netgate ACME package 0.6.3 allows remote attackers to to run arbitrary code via the RootFolder field to acme_certificate_edit.php page of the ACME package.
Software | From | Fixed in |
---|---|---|
netgate / pfsense | 2.4.4-p3 | 2.4.4-p3.x |
netgate / acme | 0.6.3 | 0.6.3.x |