CVE-2023-29975

EUVD-2023-33505
An issue discovered in Pfsense CE version 2.6.0 allows attackers to change the password of any user without verification.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H