Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Cross-Site Request Forgery (CSRF) in the System Halt API (/system/halt) of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Deciso OPNsense 跨站请求伪造漏洞
Vulnerability Description
Deciso OPNsense是荷兰Deciso公司的一套基于FreeBSD的开源防火墙和路由软件。 OPNsense 23.7之前版本存在跨站请求伪造漏洞,该漏洞源于System Halt API存在跨站请求伪造(CSRF)漏洞。攻击者可利用该漏洞通过设计GET请求造成拒绝服务(DoS)。
CVSS Information
N/A
Vulnerability Type
N/A