The vulnerability, tracked as CVE-2023-42325 impacts pfSense appliances. It allows an attacker to perform XSS injection through the WebGUI logs filter service. This can be used for further exploits.
Stormshield Network Security (SNS) appliance protects you from that attack, thanks to dedicated IPS signature. To work efficiently on HTTPS traffic, it must be decrypted.
ID | Name |
http:client.95 | Exploitation of XSS vulnerability in pfSense (CVE-2023-42325) |