Open Source Firewall pfsense Vulnerable to Remote Code Execution Attacks
ID: d5f82cfe-9d40-5db2-916b-041eed9dea0a
STIX ID: report--d5f82cfe-9d40-5db2-916b-041eed9dea0a
Feed Name: cybersecurityNews.com
Threat Score
A remote code execution vulnerability (CVE-2022-31814) affecting pfSense with the pfBlockerNG package was analyzed: initial exploit attempts failed due to Python/PHP version differences, researchers modified scripts to work across environments and successfully wrote a PHP webshell; an updated multi-payload exploit has been published to increase success against diverse targets, highlighting the need for timely patching and configuration audits.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
