pfSense CE/Plus < 2.6.0/22.05: XSS in WebGUI via URL Table Alias
CVE-2022-29273 Published on February 22, 2023

pfSense CE through 2.6.0 and pfSense Plus before 22.05 allow XSS in the WebGUI via URL Table Alias URL parameters.

NVD


Products Associated with CVE-2022-29273

Want to know whenever a new CVE is published for Netgate Pfsense? stack.watch will email you.

 

Exploit Probability

EPSS
40.96%
Percentile
97.32%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.