First published: Wed Dec 06 2023(Updated: )
An issue in Netgate pfSense Plus v.23.05.1 and before and pfSense CE v.2.7.0 allows a remote attacker to execute arbitrary code via a crafted request to the packet_capture.php file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgate pfSense | <=2.7.0 | |
Netgate pfSense Plus | <=23.05.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-48123 is high, with a CVSS score of 8.8.
To fix CVE-2023-48123, users should update Netgate pfSense Plus to version 23.05.1 or later, or update pfSense CE to version 2.7.0 or later.