CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. It may be remotely exploitable.
CVE
CVE-2022-26019
Severity
HIGH
CVSS
8.8
EPSS
4.33%
Original NVD Description
Improper access control vulnerability in pfSense CE and pfSense Plus (pfSense CE software versions prior to 2.6.0 and pfSense Plus software versions prior to 22.01) allows a remote attacker with the privilege to change NTP GPS settings to rewrite existing files on the file system, which may result in arbitrary command execution.
Related CVEs
Other vulnerabilities affecting the same vendor(s)