Sploitus

CVE-2019-16701

3 known exploits for CVE-2019-16701

pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value.

Affected products
Pfsense
Netgate Pfsense
< 2.4.4
Fix
Available
CVSS 2.0
9.0 HIGH
CVSS 3.1
8.8 HIGH
EPSS
19.6% (97th percentile)
Weakness
CWE-78
NVD status
Modified
Published
2019-09-25
CVE-2019-16701 at NVD
Authoritative description, scoring and affected products

3 known exploits for CVE-2019-16701

Proof-of-concept code and exploit modules indexed by Sploitus