Security Advisory

CVE-2020-21219

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-15 00:00:00
Last updated 2025-04-25 14:34:36
Assigner mitre
State PUBLISHED

Description

Cross Site Scripting (XSS) vulnerability in Netgate pf Sense 2.4.4-Release-p3 and Netgate ACME package 0.6.3 allows remote attackers to to run arbitrary code via the RootFolder field to acme_certificate_edit.php page of the ACME package.