Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Netgate

First CVE: Jul 2, 2014Active for: 12 yearsTotal CVEs: 59
46.1
VTI Score
High

Netgate develops firewall, network gateway, and security appliance software—principally pfSense in its open-source, community, and commercial variants—that serves as a perimeter defense point for small to medium-sized networks and is more prominent than most single-product vendors in the landscape. Vulnerabilities affecting the vendor cluster around web-interface and command-execution attack surfaces: cross-site scripting, OS command injection, path traversal, and cross-site request forgery recur across its product line and reflect the exposed administrative interface and privilege-escalation risks inherent to gateway appliances. A meaningful share of the vendor's disclosures reach critical severity, and vulnerabilities in this product family have a marked tendency to acquire public exploit tooling, making timely patching essential for operators of internet-exposed or management-accessible instances. Defenders should prioritize tracking pfSense updates and inventory deployed instances and firmware versions, particularly for versions approaching or in end-of-life; current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
59
Total CVEs
More Total CVEs than 99% of tracked vendors
0.6
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
6.7
Avg CVSS Score
Higher Avg CVSS Score than 43% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Netgate over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 2, 2014
12 years ago
Most Recent CVE
Apr 4, 2026
112 days ago

Products(9 total)

Top CVEs

Signals from CVEs in this vendor scope (59 CVEs).

59 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-31814CRITICAL
pfSense pfBlockerNG through 2.1.4_26 allows remote attackers to execute arbitrary OS commands as root via shell metacharacters in the HTTP Host header. NOTE: 3.x is unaffected.
Sep 5, 20229.893NOYES
CVE-2023-27253HIGH
A command injection vulnerability in the function restore_rrddata() of Netgate pfSense v2.7.0 allows authenticated attackers to execute arbitrary commands via manipulating the cont
Mar 17, 20238.884NOYES
CVE-2023-48795MEDIUM
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packet
Dec 18, 20235.981NOYES
CVE-2019-16667HIGH
diag_command.php in pfSense 2.4.4-p3 allows CSRF via the txtCommand or txtRecallBuffer field, as demonstrated by executing OS commands. This occurs because csrf_callback() produces
Sep 26, 20198.869NOYES
CVE-2023-42326HIGH
An issue in Netgate pfSense v.2.7.0 allows a remote attacker to execute arbitrary code via a crafted request to the interfaces_gif_edit.php and interfaces_gre_edit.php components.
Nov 14, 20238.864NONO
CVE-2019-12347MEDIUM
In pfSense 2.4.4-p3, a stored XSS vulnerability occurs when attackers inject a payload into the Name or Description field via an acme_accountkeys_edit.php action. The vulnerability
May 29, 20196.164NOYES
CVE-2018-4021HIGH
An exploitable command injection vulnerability exists in the way Netgate pfSense CE 2.4.4-RELEASE processes the parameters of a specific POST request. The attacker can exploit this
Dec 3, 20187.263NONO
CVE-2015-2295MEDIUM
Cross-site request forgery (CSRF) vulnerability in system_firmware_restorefullbackup.php in the WebGUI in pfSense before 2.2.1 allows remote attackers to hijack the authentication
Apr 10, 20156.863NOYES
CVE-2024-46538MEDIUM
A cross-site scripting (XSS) vulnerability in pfsense v2.5.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the $pconfig variable at
Oct 22, 20244.862NONO
CVE-2023-48123HIGH
An issue in Netgate pfSense Plus v.23.05.1 and before and pfSense CE v.2.7.0 allows a remote attacker to execute arbitrary code via a crafted request to the packet_capture.php file
Dec 6, 20238.858NONO
View all 59 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products59 CVEs
59%
32%
8%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (3.4%)
Network39 (66.1%)
Unknown18 (30.5%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low40 (67.8%)
High1 (1.7%)
Unknown18 (30.5%)
User Interaction
None21 (35.6%)
Unknown18 (30.5%)
Required20 (33.9%)
Privileges Required
Low17 (28.8%)
High5 (8.5%)
None19 (32.2%)
Unknown18 (30.5%)

Exploit Exposure

Signals from CVEs in this vendor scope (59 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
5.1% of CVEs· 98th percentile
Nuclei
2 CVEs
3.4% of CVEs· 95th percentile
ExploitDB
10 CVEs
16.9% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Netgate.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Netgate — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Netgate's Products

View all 4 CNAs →

Top CWEs