Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sangoma freepbx 2.5.0 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2009-1801
Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote malicious users to inject arbitrary web script or HTML via the (1) display parameter to reports.php, the (2) order and (3) extdisplay paramet...
Freepbx Freepbx 2.5.0rc2
Freepbx Freepbx 2.4.0 Beta1
Freepbx Freepbx 2.5.2
Freepbx Freepbx 2.5.0 Beta1
Freepbx Freepbx 2.4.1
Freepbx Freepbx 2.4.0 Beta2
Freepbx Freepbx 2.5.0rc3
Freepbx Freepbx 2.5.1
Freepbx Freepbx 2.4
Sangoma Freepbx 2.4.0
Sangoma Freepbx 2.5.0
445
VMScore
CVE-2009-1803
FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, generates different error messages for a failed login attempt depending on whether the user account exists, which allows remote malicious users to enumerate valid usernames.
Freepbx Freepbx 2.5.0rc2
Freepbx Freepbx 2.4.0 Beta1
Freepbx Freepbx 2.5.2
Freepbx Freepbx 2.5.0 Beta1
Freepbx Freepbx 2.4.1
Freepbx Freepbx 2.4.0 Beta2
Freepbx Freepbx 2.5.0rc3
Freepbx Freepbx 2.5
Freepbx Freepbx 2.5.1
Freepbx Freepbx 2.4
Sangoma Freepbx 2.4.0
Sangoma Freepbx 2.5.0
605
VMScore
CVE-2009-1802
Multiple cross-site request forgery (CSRF) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote malicious users to hijack the authentication of admins for requests that create a new admin account or have unspecified other impact.
Freepbx Freepbx 2.5.0rc2
Freepbx Freepbx 2.4.0 Beta1
Freepbx Freepbx 2.5.2
Freepbx Freepbx 2.5.0 Beta1
Freepbx Freepbx 2.4.1
Freepbx Freepbx 2.4.0 Beta2
Freepbx Freepbx 2.5.0rc3
Freepbx Freepbx 2.5
Freepbx Freepbx 2.5.1
Freepbx Freepbx 2.4
Sangoma Freepbx 2.4.0
Sangoma Freepbx 2.5.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-30065
CVE-2024-5843
CVE-2024-30080
code execution
CVE-2024-4577
CVE-2024-26169
wireless
remote code execution
CVE-2024-36103
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started