FreePBX music是FreePBX团队的一款电话系统音乐组件。 FreePBX music 17.0.1版本至17.0.7之前版本存在命令注入漏洞,该漏洞源于Music.class.php中validateCustomConfiguration()函数允许危险命令行选项且applicationUsesDisallowedPlayerOption()未拒绝相关参数,可能导致经过身份验证的管理员以asterisk服务用户身份执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-73663 | 9.3 CRITICAL | FreePBX: Unauthenticated SQL injection in FreePBX missedcall via inbound Caller ID name le |
| CVE-2026-73665 | 9.3 CRITICAL | FreePBX UCP: Unauthenticated remote code execution via socket.io namespace auth bypass and |
| CVE-2026-73661 | 8.6 HIGH | FreePBX: Authenticated Framework AUTHTYPE Can Be Restored From a Crafted Backup |
| CVE-2026-73664 | 8.6 HIGH | FreePBX: Authenticated Arbitrary SSH Key Injection via Backup Module |
| CVE-2026-73660 | 7.5 HIGH | FreePBX: Authenticated TTS AGI Command Injection Through TTS Name |
No comments yet