Total vulnerabilities in the database
Insecure permissions in the configuration directory (/conf/) of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allow attackers to access sensitive information (e.g., hashed root password) which could lead to privilege escalation.
Software | From | Fixed in |
---|---|---|
opnsense / opnsense | - | 23.7 |