8.8
CVSSv3

CVE-2023-27253

Published: 17/03/2023 Updated: 13/07/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A command injection vulnerability in the function restore_rrddata() of Netgate pfSense v2.7.0 allows authenticated malicious users to execute arbitrary commands via manipulating the contents of an XML file supplied to the component config.xml.

Vulnerable Product Search on Vulmon Subscribe to Product

netgate pfsense 2.7.0