General

Profile

James Kim

  • Login: james010kim
  • Registered on: 11/15/2024
  • Last connection: 11/15/2024

Issues

open closed Total
Assigned issues 0 0 0
Reported issues 0 1 1

Activity

11/18/2024

02:13 AM pfSense Bug #15839: ``diag_packet_capture.php`` uses ``viewdetail`` and ``viewtype`` values in command execution without validation or encoding
In the future, I will report new security concerns through the link.
As you mentioned, arbitrary inputs ​​are repl...
James Kim

11/15/2024

02:28 AM pfSense Bug #15839: ``diag_packet_capture.php`` uses ``viewdetail`` and ``viewtype`` values in command execution without validation or encoding
Category is not Authentication, Packet Capture is proper. James Kim
02:25 AM pfSense Bug #15839 (Rejected): ``diag_packet_capture.php`` uses ``viewdetail`` and ``viewtype`` values in command execution without validation or encoding
I. Problem Description
A potential authenticated arbitrary command execution vulnerability was found in
diag_pack...
James Kim

Also available in: Atom