漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
FreePBX: Unauthenticated SQL injection in FreePBX missedcall via inbound Caller ID name leads to administrator takeover
Vulnerability Description
FreePBX is an open source IP PBX. From 16.0.0 until 16.0.11 and 17.0.4, the FreePBX missedcall module places the inbound Caller ID name from crafted SIP From headers into the missedcalllog INSERT in agi-bin/missedcallnotify.php without escaping or bound parameters. An unauthenticated caller can inject SQL when a monitored extension goes unanswered, corrupting the database and modifying FreePBX administrator accounts to obtain unauthorized remote access. This issue is fixed in versions 16.0.11 and 17.0.4.
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
FreePBX missedcall SQL注入漏洞
Vulnerability Description
FreePBX missedcall是FreePBX团队的一个未接来电提醒模块。 FreePBX missedcall 16.0.11之前版本和17.0.1至17.0.4之前版本存在SQL注入漏洞,该漏洞源于未对精心构造的SIP From标头中的调用者ID名称进行转义或绑定参数,可能导致未经身份验证的攻击者在受监控分机无人应答时注入SQL,破坏数据库并修改FreePBX管理员账户以获取未经授权的远程访问。
CVSS Information
N/A
Vulnerability Type
N/A