Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An authenticated Cross-Site Scripting (XSS) vulnerability was found in widgets/widgets/wake_on_lan_widget.php, a component of the pfSense software WebGUI, on version 2.4.4-p2 and earlier. The widget did not encode the descr (description) parameter of wake-on-LAN entries in its output, leading to a possible stored XSS.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
pfSense 跨站脚本漏洞
Vulnerability Description
pfSense是一套基于FreeBSD Linux的网络防火墙。 Netgate pfSense 存在跨站脚本漏洞,攻击者可以在描述文本框或参数中注入恶意 JavaScript 代码。
CVSS Information
N/A
Vulnerability Type
N/A