CVE-2025-34174 | Netgate pfSense CE 2.3.2_7 Status Traffic Totals Page status_traffic_totals.php start-day cross site scripting (ID 16413)
A vulnerability was found in Netgate pfSense CE 2.3.2_7 and classified as problematic. This vulnerability affects unknown code of the file /usr/local/www/status_traffic_totals.php of the component Status Traffic Totals Page. Such manipulation of the argument start-day leads to cross site scripting.
This vulnerability is listed as CVE-2025-34174. The attack may be performed from remote. There is no available exploit.
It is advisable to implement a patch to correct this issue.