CVE-2025-69691 - Netgate pfSense CE PHP Code Execution Vulnerability
CVE ID :CVE-2025-69691
Published : May 8, 2026, 7:16 a.m. | 2 hours ago
Description :Netgate pfSense CE 2.8.0 allows code execution in the XMLRPC API via pfsense.exec_php. NOTE: the Supplier disputes this because the API call is only available to admins and they are intentionally allowed to execute PHP code.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : May 8, 2026, 7:16 a.m. | 2 hours ago
Description :Netgate pfSense CE 2.8.0 allows code execution in the XMLRPC API via pfsense.exec_php. NOTE: the Supplier disputes this because the API call is only available to admins and they are intentionally allowed to execute PHP code.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...