FreePBX是FreePBX团队开源的一款基于Web的电话交换系统。 FreePBX 17.0.9之前版本存在授权问题漏洞,该漏洞源于UCP Node服务器中Socket.IO 4中间件仅应用于默认命名空间,导致未经身份验证的客户端可连接自定义命名空间并通过Asterisk Manager Interface发送包含回车或换行的特制事件值,可能导致任意命令以asterisk服务用户身份执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-73663 | 9.3 CRITICAL | FreePBX: Unauthenticated SQL injection in FreePBX missedcall via inbound Caller ID name le |
| CVE-2026-73661 | 8.6 HIGH | FreePBX: Authenticated Framework AUTHTYPE Can Be Restored From a Crafted Backup |
| CVE-2026-73664 | 8.6 HIGH | FreePBX: Authenticated Arbitrary SSH Key Injection via Backup Module |
| CVE-2026-73662 | 7.6 HIGH | Authenticated FreePBX Music RCE via mpg123 and Asterisk Call Files |
| CVE-2026-73660 | 7.5 HIGH | FreePBX: Authenticated TTS AGI Command Injection Through TTS Name |
No comments yet