Security Advisory

CVE-2019-16701

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-25 15:45:56
Last updated 2024-08-05 01:17:41
Assigner mitre
State PUBLISHED

Description

pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value.