Sangoma

Freepbx

44 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 9.39%
  • Veröffentlicht 28.09.2010 18:00:03
  • Zuletzt bearbeitet 16.06.2026 23:22:52

Directory traversal vulnerability in page.recordings.php in the System Recordings component in the configuration interface in FreePBX 2.8.0 and earlier allows remote authenticated administrators to create arbitrary files via a .. (dot dot) in the use...

  • EPSS 1.26%
  • Veröffentlicht 28.05.2009 14:30:00
  • Zuletzt bearbeitet 16.06.2026 23:08:05

Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote attackers to inject arbitrary web script or HTML via the (1) display parameter to reports.php, the (2) order an...

  • EPSS 1.22%
  • Veröffentlicht 28.05.2009 14:30:00
  • Zuletzt bearbeitet 16.06.2026 23:08:05

FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, generates different error messages for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.

  • EPSS 0.58%
  • Veröffentlicht 28.05.2009 14:30:00
  • Zuletzt bearbeitet 16.06.2026 23:08:05

Multiple cross-site request forgery (CSRF) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote attackers to hijack the authentication of admins for requests that create a new admin account or have un...