SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  FreePBX Endpoint Management Command Injection

Category: VoIP-ATTACKS      

FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. In versions 17.0.2.36 and above before 17.0.3, the filestore module within the Administrative interface is vulnerable to a post-authentication command injection by an authenticated known user via the testconnection function.


Relevant Information