CVE-2015-4029
18.08.2015, 15:59
Cross-site scripting (XSS) vulnerability in the WebGUI in pfSense before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the zone parameter in a del action to services_captiveportal_zones.php.
Vendor | Product | Version |
---|---|---|
netgate | pfsense | 𝑥 ≤ 2.2.2 |
𝑥
= Vulnerable software versions