VYPR
High severity7.5NVD Advisory· Published Apr 6, 2023· Updated Jun 17, 2026

CVE-2020-19678

CVE-2020-19678

Description

Directory Traversal vulnerability found in Pfsense v.2.1.3 and Pfsense Suricata v.1.4.6 pkg v.1.0.1 allows a remote attacker to obtain sensitive information via the file parameter to suricata/suricata_logs_browser.php.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:a:oisf:suricata:1.4.6:*:*:*:*:*:*:*
  • Pfsense/Pfsense2 versions
    cpe:2.3:a:pfsense:pfsense:2.1.3:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:pfsense:pfsense:2.1.3:*:*:*:*:*:*:*
    • (no CPE)range: =2.1.3
  • cpe:2.3:a:pfsense:suricata_package:1.0.1:*:*:*:*:*:*:*
  • Pfsense/Pfsense Suricata pkgdescription
  • Pfsense/Suricatallm-create
    Range: =1.4.6 pkg v.1.0.1

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.