EIP-2026-110559
PRE-CVEpfSense 2.1 build 20130911-1816 - Directory Traversal
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-110559. PoCs published by @u0x.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in pfSense 2.1 via the Snort package's `snort_log_view.php`, allowing authenticated users to read arbitrary files (e.g., `/etc/passwd`, `/conf/config.xml`) and escalate privileges by extracting hashed credentials.
Description
pfSense 2.1 build 20130911-1816 - Directory Traversal
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in pfSense 2.1 via the Snort package's `snort_log_view.php`, allowing authenticated users to read arbitrary files (e.g., `/etc/passwd`, `/conf/config.xml`) and escalate privileges by extracting hashed credentials.