IPFire Web-Based Firewall Interface Allows Authenticated Administrator to Inject Persistent JavaScript

IPFire Web-Based Firewall Interface Allows Authenticated Administrator to Inject Persistent JavaScript

A stored cross-site scripting (XSS) flaw identified in IPFire 2.29’s web-based firewall interface (firewall.cgi).
Tracked as CVE-2025-50975, the vulnerability allows any authenticated administrator to …
Read more


Published Date:
Aug 27, 2025 (1 hour, 59 minutes ago)

Vulnerabilities has been mentioned in this article.

Share the Post:

Related Posts