pfSense records
31 published records for vendor pfsense.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 2 · 6.5%
- Pre-auth RCE
- 3
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')14
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')4
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-287 Improper Authentication1
- CWE-307 Improper Restriction of Excessive Authentication Attempts1
- CWE-36 Absolute Path Traversal1
The weakness classes this vendor ships most often: where to look.
CWEAll records
31 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
61This week | CVE-2021-41282Weaponized | diag_routes.php in pfSense 2.5.2 allows sed data injection.pfsense · pfsense · CWE-74 | High8.8 | — | 87.1% | Mar 1, 2022 |
45Plan | CVE-2016-10709Weaponized | pfSense before 2.3 allows remote authenticated users to execute arbitrary OS commands via a '|' character in the status_rrd_graph_img.php grpfsense · pfsense · CWE-78 | High8.8 | — | 33.7% | Jan 22, 2018 |
44Plan | CVE-2022-40624Proof of concept | pfSense pfBlockerNG through 2.1.4_27 allows remote attackers to execute arbitrary OS commands as root via the HTTP Host header, a different pfsense · pfblockerng · CWE-78 | Critical9.8 | — | 17.1% | Dec 20, 2022 |
42Plan | CVE-2023-27100Proof of concept | Improper restriction of excessive authentication attempts in the SSHGuard component of Netgate pfSense Plus software v22.05.1 and pfSense CEnetgate · pfsense plus · CWE-307 | Critical9.8 | — | 9.8% | Mar 22, 2023 |
40Plan | CVE-2023-29974No exploit | An issue discovered in Pfsense CE version 2.6.0 allows attackers to compromise user accounts via weak password requirements.pfsense · pfsense · CWE-521 | Critical9.8 | — | 1.8% | Nov 8, 2023 |
39Monitor | CVE-2025-69691No exploit | Netgate pfSense CE 2.8.0 allows code execution in the XMLRPC API via pfsense.exec_php.pfsense · pfsense · CWE-284 | Critical9.9 | — | 0.7% | May 8, 2026 |
36Monitor | CVE-2025-69690Proof of concept | Netgate pfSense CE 2.7.2 allows code execution by using the module installer with a backup file with a serialized PHP object containing the pfsense · pfsense · CWE-502 | Critical9.1 | — | 0.8% | May 8, 2026 |
32Monitor | CVE-2021-27933No exploit | pfSense 2.5.0 allows XSS via the services_wol_edit.php Description field.pfsense · pfsense · CWE-79 | Medium6.1 | — | 26.6% | Apr 28, 2021 |
31Monitor | CVE-2020-19678No exploit | Directory Traversal vulnerability found in Pfsense v.2.1.3 and Pfsense Suricata v.1.4.6 pkg v.1.0.1 allows a remote attacker to obtain sensipfsense · pfsense · CWE-22 | High7.5 | — | 3.5% | Apr 6, 2023 |
31Monitor | CVE-2011-4197No exploit | etc/inc/certs.inc in the PKI implementation in pfSense before 2.0.1 creates each X.509 certificate with a true value for the CA basic constrpfsense · pfsense · CWE-264 | High7.5 | — | 1.9% | Jan 3, 2012 |
29Monitor | CVE-2023-29975No exploit | An issue discovered in Pfsense CE version 2.6.0 allows attackers to change the password of any user without verification.pfsense · pfsense · CWE-287 | High7.2 | — | 1.7% | Nov 9, 2023 |
27Monitor | CVE-2025-53392Proof of concept | In Netgate pfSense CE 2.8.0, the "WebCfg - Diagnostics: Command" privilege allows reading arbitrary files via diag_command.php dlPath directpfsense · pfsense · CWE-36 | Medium6.5 | — | 1.8% | Jun 28, 2025 |
27Monitor | CVE-2022-21132No exploit | Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg-WireGuard 0.1.5 versions prior to 0.1.5_4 and pfSense-pkg-WireGuard 0pfsense · pfsense-pkg-wireguard · CWE-22 | Medium6.5 | — | 1.8% | Mar 10, 2022 |
26Monitor | CVE-2025-34176No exploit | Netgate pfSense CE Suricata Package v7.0.8_2 Directory Traversal Information Disclosurepfsense · pfsense · CWE-22 | Medium5.3 | — | 16.0% | Sep 9, 2025 |
25Monitor | CVE-2025-34175No exploit | Netgate pfSense CE Suricata package v7.0.8_2 Reflected Cross-Site Scriptingpfsense · pfsense · CWE-79 | Medium5.1 | — | 15.5% | Sep 9, 2025 |
25Monitor | CVE-2019-18667No exploit | /usr/local/www/freeradius_view_config.php in the freeradius3 package before 0.15.7_3 for pfSense on FreeBSD allows a user with an XSS payloapfsense · pfsense-pkg-freeradius3 · CWE-79 | Medium6.1 | — | 4.0% | Nov 2, 2019 |
25Monitor | CVE-2021-20729No exploit | Cross-site scripting vulnerability in pfSense CE and pfSense Plus (pfSense CE software versions 2.5.2 and earlier, and pfSense Plus softwarepfsense · pfsense · CWE-79 | Medium6.1 | — | 2.9% | Mar 31, 2022 |
25Monitor | CVE-2022-42247No exploit | pfSense v2.5.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the browser.php component.pfsense · pfsense · CWE-79 | Medium6.1 | — | 2.7% | Oct 3, 2022 |
24Monitor | CVE-2014-4696No exploit | Multiple open redirect vulnerabilities in the Suricata package before 1.0.6 for pfSense through 2.1.4 allow remote attackers to redirect usepfsense · suricata package | Medium5.8 | — | 2.1% | Jul 2, 2014 |
24Monitor | CVE-2014-4695No exploit | Multiple open redirect vulnerabilities in the Snort package before 3.0.13 for pfSense through 2.1.4 allow remote attackers to redirect userspfsense · snort package | Medium5.8 | — | 2.1% | Jul 2, 2014 |
24Monitor | CVE-2022-23993No exploit | /usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP echo call, causing XSSpfsense · pfsense · CWE-79 | Medium6.1 | — | 1.5% | Jan 26, 2022 |
23Monitor | CVE-2025-34174No exploit | Netgate pfSense CE Status_Traffic_Totals Package v2.3.2_7 Stored Cross-Site Scriptingpfsense · pfsense · CWE-79 | Medium5.1 | — | 10.5% | Sep 9, 2025 |
23Monitor | CVE-2020-26693No exploit | A stored cross-site scripting (XSS) vulnerability was discovered in pfSense 2.4.5-p1 which allows an authenticated attacker to execute arbitpfsense · pfsense · CWE-79 | Medium5.4 | — | 5.3% | Jun 1, 2021 |
21Monitor | CVE-2025-34178No exploit | Netgate pfSense CE Suricata package v7.0.8_2 Stored Cross-Site Scriptingpfsense · pfsense · CWE-79 | Medium5.1 | — | 3.9% | Sep 9, 2025 |
21Monitor | CVE-2025-34173No exploit | Netgate pfSense CE Snort package v4.1.6_25 Directory Traversal Information Disclosurepfsense · pfsense · CWE-22 | Medium5.3 | — | 0.9% | Sep 9, 2025 |
- CVE-2021-4128261This week
diag_routes.php in pfSense 2.5.2 allows sed data injection.
HighCVSS 8.8WeaponizedEPSS 87%pfsense · pfsenseMar 1, 2022
- CVE-2016-1070945Plan
pfSense before 2.3 allows remote authenticated users to execute arbitrary OS commands via a '|' character in the status_rrd_graph_img.php gr
HighCVSS 8.8WeaponizedEPSS 34%pfsense · pfsenseJan 22, 2018
- CVE-2022-4062444Plan
pfSense pfBlockerNG through 2.1.4_27 allows remote attackers to execute arbitrary OS commands as root via the HTTP Host header, a different
CriticalCVSS 9.8Proof of conceptEPSS 17%pfsense · pfblockerngDec 20, 2022
- CVE-2023-2710042Plan
Improper restriction of excessive authentication attempts in the SSHGuard component of Netgate pfSense Plus software v22.05.1 and pfSense CE
CriticalCVSS 9.8Proof of conceptEPSS 10%netgate · pfsense plusMar 22, 2023
- CVE-2023-2997440Plan
An issue discovered in Pfsense CE version 2.6.0 allows attackers to compromise user accounts via weak password requirements.
CriticalCVSS 9.8No exploitEPSS 2%pfsense · pfsenseNov 8, 2023
- CVE-2025-6969139Monitor
Netgate pfSense CE 2.8.0 allows code execution in the XMLRPC API via pfsense.exec_php.
CriticalCVSS 9.9No exploitEPSS 1%pfsense · pfsenseMay 8, 2026
- CVE-2025-6969036Monitor
Netgate pfSense CE 2.7.2 allows code execution by using the module installer with a backup file with a serialized PHP object containing the
CriticalCVSS 9.1Proof of conceptEPSS 1%pfsense · pfsenseMay 8, 2026
- CVE-2021-2793332Monitor
pfSense 2.5.0 allows XSS via the services_wol_edit.php Description field.
MediumCVSS 6.1No exploitEPSS 27%pfsense · pfsenseApr 28, 2021
- CVE-2020-1967831Monitor
Directory Traversal vulnerability found in Pfsense v.2.1.3 and Pfsense Suricata v.1.4.6 pkg v.1.0.1 allows a remote attacker to obtain sensi
HighCVSS 7.5No exploitEPSS 3%pfsense · pfsenseApr 6, 2023
- CVE-2011-419731Monitor
etc/inc/certs.inc in the PKI implementation in pfSense before 2.0.1 creates each X.509 certificate with a true value for the CA basic constr
HighCVSS 7.5No exploitEPSS 2%pfsense · pfsenseJan 3, 2012
- CVE-2023-2997529Monitor
An issue discovered in Pfsense CE version 2.6.0 allows attackers to change the password of any user without verification.
HighCVSS 7.2No exploitEPSS 2%pfsense · pfsenseNov 9, 2023
- CVE-2025-5339227Monitor
In Netgate pfSense CE 2.8.0, the "WebCfg - Diagnostics: Command" privilege allows reading arbitrary files via diag_command.php dlPath direct
MediumCVSS 6.5Proof of conceptEPSS 2%pfsense · pfsenseJun 28, 2025
- CVE-2022-2113227Monitor
Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg-WireGuard 0.1.5 versions prior to 0.1.5_4 and pfSense-pkg-WireGuard 0
MediumCVSS 6.5No exploitEPSS 2%pfsense · pfsense-pkg-wireguardMar 10, 2022
- CVE-2025-3417626Monitor
Netgate pfSense CE Suricata Package v7.0.8_2 Directory Traversal Information Disclosure
MediumCVSS 5.3No exploitEPSS 16%pfsense · pfsenseSep 9, 2025
- CVE-2025-3417525Monitor
Netgate pfSense CE Suricata package v7.0.8_2 Reflected Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 16%pfsense · pfsenseSep 9, 2025
- CVE-2019-1866725Monitor
/usr/local/www/freeradius_view_config.php in the freeradius3 package before 0.15.7_3 for pfSense on FreeBSD allows a user with an XSS payloa
MediumCVSS 6.1No exploitEPSS 4%pfsense · pfsense-pkg-freeradius3Nov 2, 2019
- CVE-2021-2072925Monitor
Cross-site scripting vulnerability in pfSense CE and pfSense Plus (pfSense CE software versions 2.5.2 and earlier, and pfSense Plus software
MediumCVSS 6.1No exploitEPSS 3%pfsense · pfsenseMar 31, 2022
- CVE-2022-4224725Monitor
pfSense v2.5.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the browser.php component.
MediumCVSS 6.1No exploitEPSS 3%pfsense · pfsenseOct 3, 2022
- CVE-2014-469624Monitor
Multiple open redirect vulnerabilities in the Suricata package before 1.0.6 for pfSense through 2.1.4 allow remote attackers to redirect use
MediumCVSS 5.8No exploitEPSS 2%pfsense · suricata packageJul 2, 2014
- CVE-2014-469524Monitor
Multiple open redirect vulnerabilities in the Snort package before 3.0.13 for pfSense through 2.1.4 allow remote attackers to redirect users
MediumCVSS 5.8No exploitEPSS 2%pfsense · snort packageJul 2, 2014
- CVE-2022-2399324Monitor
/usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP echo call, causing XSS
MediumCVSS 6.1No exploitEPSS 2%pfsense · pfsenseJan 26, 2022
- CVE-2025-3417423Monitor
Netgate pfSense CE Status_Traffic_Totals Package v2.3.2_7 Stored Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 10%pfsense · pfsenseSep 9, 2025
- CVE-2020-2669323Monitor
A stored cross-site scripting (XSS) vulnerability was discovered in pfSense 2.4.5-p1 which allows an authenticated attacker to execute arbit
MediumCVSS 5.4No exploitEPSS 5%pfsense · pfsenseJun 1, 2021
- CVE-2025-3417821Monitor
Netgate pfSense CE Suricata package v7.0.8_2 Stored Cross-Site Scripting
MediumCVSS 5.1No exploitEPSS 4%pfsense · pfsenseSep 9, 2025
- CVE-2025-3417321Monitor
Netgate pfSense CE Snort package v4.1.6_25 Directory Traversal Information Disclosure
MediumCVSS 5.3No exploitEPSS 1%pfsense · pfsenseSep 9, 2025