Sploitus

CVE-2023-27100

7 known exploits for CVE-2023-27100

Improper restriction of excessive authentication attempts in the SSHGuard component of Netgate pfSense Plus software v22.05.1 and pfSense CE software v2.6.0 allows attackers to bypass brute force protection mechanisms via crafted web requests.

Affected products
Pfsense Ce, Pfsense Plus
Netgate Pfsense Plus
= 22.05.1
Pfsense
= 2.6.0
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
9.8% (95th percentile)
Weakness
CWE-307
NVD status
Modified
Published
2023-03-22
CVE-2023-27100 at NVD
Authoritative description, scoring and affected products

7 known exploits for CVE-2023-27100

Proof-of-concept code and exploit modules indexed by Sploitus