AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-20799

HIGH · CVSS 7.5 EPSS 1.59%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-03-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-20799
Severity
HIGH
CVSS
7.5
EPSS
1.59%

Original NVD Description

In pfSense 2.4.4_1, blocking of source IP addresses on the basis of failed HTTPS authentication is inconsistent with blocking of source IP addresses on the basis of failed SSH authentication (the behavior does not match the sshguard documentation), which might make it easier for attackers to bypass intended access restrictions.