Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in the 3CX Phone system (web) management console 12.5.44178.1002 through 12.5 SP2. The Content.MainForm.wgx component is affected by XXE via a crafted XML document in POST data. There is potential to use this for SSRF (reading local files, outbound HTTP, and outbound DNS).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
3CX Phone system(web)management console 代码问题漏洞
Vulnerability Description
3CX Phone system(web)management console是一款基于Web的3CX电话系统管理控制台程序。 3CX Phone system (web) management console 12.5.44178.1002版本至12.5 SP2版本中存在代码问题漏洞。该漏洞源于网络系统或产品的代码开发过程中存在设计或实现不当的问题。
CVSS Information
N/A
Vulnerability Type
N/A