pfBlockerNG vulnerability?
-
Is this a concern?
https://cybersecuritynews.com/open-source-firewall-pfsense-vulnerable/
-
https://forum.netgate.com/topic/189579/rce-exploit
-
@SteveITS
Thanks Steve. I'll pay closer attention to the CVE date next time. -
@SteveITS Just had high cpu usage last night it stopped netflix, rebooted same thing, this morning a red screen logging in about a CSRF token which I stepped thru to get a new tokin, hope I did not screw things up. Also I not running any plugins, just the bare 2100.
The 2100 right now is offline on my desk not knowing what to do next?
-
@terryzb I have a CSRF token issue and high cpu 98% but that article does not say how to deal with this. I took my 2100 offline until someone know how to fix it?
-
@oznet CSRF is unrelated to pfBlocker. If you had a tan open at the login prompt your token will eventually expire.
-