Medium severity6.1NVD Advisory· Published Dec 15, 2022· Updated Jun 17, 2026
CVE-2020-21219
CVE-2020-21219
Description
Cross Site Scripting (XSS) vulnerability in Netgate pf Sense 2.4.4-Release-p3 and Netgate ACME package 0.6.3 allows remote attackers to to run arbitrary code via the RootFolder field to acme_certificate_edit.php page of the ACME package.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Netgate/pf Sense ACME packagedescription
- Range: 0.6.3
Patches
Vulnerability mechanics
References
2- github.com/pfsense/FreeBSD-ports/commit/a6f443cde51e7fcf17e51f16014d3589253284d8nvdPatchThird Party Advisory
- redmine.pfsense.org/issues/9888nvdThird Party Advisory
News mentions
0No linked articles in our index yet.