All 4 CVE vulnerabilities found in CompletePBX, with AI-generated Chinese analysis, references, and POCs.
Vendor: Xorcom
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-30006 | Xorcom CompletePBX <= 5.2.35 Reflected Cross-Site Scripting CWE-79 | 6.1 | Medium | 2025-03-31 |
| CVE-2025-30005 | Xorcom CompletePBX <= 5.2.35 Authenticated Path Traversal & File Deletion CWE-22 | 8.3 | High | 2025-03-31 |
| CVE-2025-30004 | Xorcom CompletePBX <= 5.2.35 Task Scheduler Authenticated Command Injection CWE-78 | 8.8 | High | 2025-03-31 |
| CVE-2025-2292 | Xorcom CompletePBX <= 5.2.35 Authenticated File Disclosure CWE-22 | 6.5 | Medium | 2025-03-31 |
All 4 known CVE vulnerabilities affecting CompletePBX with full Chinese analysis, references, and POCs where available.