CVE-2014-4689
02.07.2014, 10:35
Absolute path traversal vulnerability in pkg_edit.php in pfSense before 2.1.4 allows remote attackers to read arbitrary XML files via a full pathname in the xml parameter.
| Vendor | Product | Version |
|---|---|---|
| netgate | pfsense | 𝑥 ≤ 2.1.3 |
𝑥
= Vulnerable software versions