Fortinet, Palo, Checkpoint, Cisco, Sonicwall … is there any big firewall vendor that didn’t have any critical vulnerabilities last year?

  • cron@feddit.orgOP
    link
    fedilink
    arrow-up
    7
    ·
    4 days ago

    And every service runs as root. This enables the CRL webserver to download /etc/shadow …

    • Ⓜ3️⃣3️⃣ 🌌@lemmy.sdf.org
      link
      fedilink
      arrow-up
      5
      ·
      4 days ago

      Or user sessions persist on the filesystem so a glitch on the captive portal’s web server allow you to get clear text username and password for currently connected vpn sessions …