Security Advisory

CVE-2023-27253

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-03-17 00:00:00
Last updated 2025-02-26 14:58:43
Assigner mitre
State PUBLISHED

Description

A command injection vulnerability in the function restore_rrddata() of Netgate pfSense v2.7.0 allows authenticated attackers to execute arbitrary commands via manipulating the contents of an XML file supplied to the component config.xml.