Vulnerabilities (CVE)

Filtered by vendor Opnsense Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-39003 1 Opnsense 1 Opnsense 2023-08-15 N/A 7.5 HIGH
OPNsense before 23.7 was discovered to contain insecure permissions in the directory /tmp.
CVE-2023-39005 1 Opnsense 1 Opnsense 2023-08-15 N/A 7.5 HIGH
Insecure permissions exist for configd.socket in OPNsense before 23.7.
CVE-2019-11816 2 Netgate, Opnsense 2 Pfsense, Opnsense 2020-08-24 6.5 MEDIUM 7.2 HIGH
Incorrect access control in the WebUI in OPNsense before version 19.1.8, and pfsense before 2.4.4-p3 allows remote authenticated users to escalate privileges to administrator via a specially crafted request.