A directory traversal vulnerability in the Captive Portal templates of OPNsense Community Edition prior to 23.7 and Business Edition prior to 23.4.2 allows malicious users to execute arbitrary system commands as root via a crafted ZIP archive.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
opnsense opnsense |