PT-2023-22499 · Unknown · Pfsense Ce

Published

2023-11-08

·

Updated

2024-09-04

·

CVE-2023-29974

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pfsense CE version 2.6.0
Description An issue in Pfsense CE allows attackers to compromise user accounts due to weak password requirements.
Recommendations For Pfsense CE version 2.6.0, consider strengthening password requirements to prevent exploitation until a patch is available.

Fix

Weakness Enumeration

Related Identifiers

CVE-2023-29974

Affected Products

Pfsense Ce