"value":"Netgate pfSense CE (prior to 2.8.0 beta release) and corresponding Plus builds is vulnerable to Cross-site scripting (XSS) in the Automatic Configuration Backup (ACB) service, allowing remote attackers to execute arbitrary JavaScript, delete backups, or leak sensitive information via an unsanitized \"reason\" field and a derivable device key generated from the public SSH key."
"value":"Netgate pfSense CE (anterior a la versi\u00f3n beta 2.8.0) y las compilaciones Plus correspondientes son vulnerables a Cross-site scripting (XSS) en el servicio de copia de seguridad de configuraci\u00f3n autom\u00e1tica (ACB), lo que permite a atacantes remotos ejecutar JavaScript arbitrario, eliminar copias de seguridad o filtrar informaci\u00f3n confidencial a trav\u00e9s de un campo de \"raz\u00f3n\" no depurado y una clave de dispositivo derivable generada a partir de la clave SSH p\u00fablica."