First published: Tue Oct 24 2023(Updated: )
Pfsense CE version 2.6.0 is vulnerable to No rate limit which can lead to an attacker creating multiple malicious users in firewall.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
pfSense pfSense | =2.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-29973 refers to a vulnerability in Pfsense CE version 2.6.0 that allows an attacker to create multiple malicious users in the firewall due to the absence of rate limiting.
CVE-2023-29973 has a severity rating of 4.9, which is considered medium.
CVE-2023-29973 allows an attacker to exploit the lack of rate limiting in Pfsense CE version 2.6.0, enabling them to create multiple malicious users in the firewall.
CVE-2023-29973 affects Pfsense CE version 2.6.0.
At the moment, there is no known fix for CVE-2023-29973. It is recommended to keep the software up to date and apply any patches or mitigation measures provided by the vendor.