First published: Thu Nov 09 2023(Updated: )
An issue discovered in Pfsense CE version 2.6.0 allows attackers to change the password of any user without verification.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
pfSense pfSense | =2.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2023-29975.
The severity of CVE-2023-29975 is high with a severity value of 7.2.
The affected software version of CVE-2023-29975 is Pfsense CE version 2.6.0.
Attackers can exploit CVE-2023-29975 by changing the password of any user without verification.
Yes, you can find more information about CVE-2023-29975 at https://www.esecforte.com/cve-2023-29975-unverified-password-changed/