CVE-2019-16701
HIGHpfSense 2.3.4-2.4.4-p3 - Remote Code Execution via pfsense.exec_php MethodCall
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-16701. PoCs published by Nassim Asrir.
AI-analyzed exploit summary This exploit leverages XMLRPC methods in pfSense to execute arbitrary PHP code via the `pfsense.exec_php` method, allowing remote command execution. It first authenticates using `pfsense.host_firmware_version` and then writes a PHP shell to the target system.
Description
pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value.
Exploits (1)
This exploit leverages XMLRPC methods in pfSense to execute arbitrary PHP code via the `pfsense.exec_php` method, allowing remote command execution. It first authenticates using `pfsense.host_firmware_version` and then writes a PHP shell to the target system.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H