Security Advisory
CVE-2019-16701
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value.