CVE-2014-4688PoC(netgate / pfsense)

LOWCVSS 6.5 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for netgate pfsense systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

pfSense before 2.1.4 allows remote authenticated users to execute arbitrary commands via (1) the hostname value to diag_dns.php in a Create Alias action, (2) the smartmonemail value to diag_smart.php, or (3) the database value to status_rrd_graph_img.php.

3.5/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • pfsense

Threat summary

  • Public PoC and exploit tooling are both present
  • 1 mentions across 1 observed day

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
pfsense

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-12: 1PoC Mentioned / Linked · 2026-03-12: 1Exploit Tool / Code · 2026-03-12: 1Technical Details · 2026-03-12: 103-12
Signal classification1 categories
PoC
1100.0%
Full discourse1 post
  • TL;DR CTF with Onurcan@CtfWithOG
    PoC

    6/10 searchsploit "pfsense 2.1.3"One hit: CVE-2014-4688 Authenticated RCE via unsanitized GET param in status_rrd_graph_img.phpExploitDB script is broken. Use the fixed PoC from GitHub (jaydenblair/CVE-2014-4688-pfsense).

    Post summary

    The post announces that a corrected PoC for CVE-2014-4688 in pfsense 2.1.3 is available on GitHub, detailing an authenticated RCE via an unsanitized GET parameter. No evidence of active exploitation or vendor patches is provided.

    1000085
    4 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appnetgatepfsense---

Explore more