Ad Schellevis
13 exploits
Active since Aug 2023
Deciso OPNsense - Command Injection RCE
CVSS 6.8
OPNsense <23.7-23.4.2 - Path Traversal
CVSS 7.2
OPNsense <23.7-23.4.2 - Open Redirect
CVSS 6.1
OPNsense < 23.7 - Cross-Site Request Forgery in System Halt API
CVSS 6.5
OPNsense < 23.7 - Reflected Cross-Site Scripting via URL Path in Log Diagnostics
CVSS 6.1
OPNsense <23.7-23.4.2 - Command Injection
CVSS 9.8
OPNsense < 23.7 - Cross-Site Scripting via system_certmanager.php act Parameter
CVSS 6.1
OPNsense <23.7-23.4.2 - Info Disclosure
CVSS 5.4
OPNsense < 23.7 - Cross-Site Scripting via Cron Item Controller openAction Parameter
CVSS 9.6
OPNsense <23.7-23.4.2 - Command Injection
CVSS 9.8
OPNsense < 23.7.5 - Cross-Site Scripting via Lobby Dashboard column_count Parameter
CVSS 5.4
OPNsense < 23.7.5 - Cross-Site Scripting via Lobby Dashboard Sequence Parameter
CVSS 5.4
OPNsense >=25.7 <25.7 - Authenticated Path Traversal and Arbitrary File Write via diag_backup.php
CVSS 4.5