CVE-2023-39004 | OPNsense up to 23.6 Configuration Directory /conf/ default permission (EUVD-2023-42761)
A vulnerability classified as critical has been found in OPNsense up to 23.6. The impacted element is an unknown function of the file /conf/ of the component Configuration Directory Handler. This manipulation causes incorrect default permissions.
This vulnerability appears as CVE-2023-39004. The attacker needs to be present on the local network. There is no available exploit.
It is recommended to upgrade the affected component.