RSS   Vulnerabilities for 'Opnsense'   RSS

2021-11-08
 
CVE-2021-42770

CWE-79
 

 
A Cross-site scripting (XSS) vulnerability was discovered in OPNsense before 21.7.4 via the LDAP attribute return in the authentication tester.

 
2021-05-03
 
CVE-2020-23015

CWE-601
 

 
An open redirect issue was discovered in OPNsense through 20.1.5. The redirect parameter "url" in login page was not filtered and can redirect user to any website.

 


Copyright 2024, cxsecurity.com

 

Back to Top