freepbx Latest Vulnerabilities
Latest vulnerabilities published by freepbx
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
Command Injection Vulnerabilities in FreePBX IP PBX System
CVE-2026-28287FreepbxSecurity-reporting8.6HIGHSQL Injection Vulnerabilities in FreePBX IP PBX Software
CVE-2026-28284FreepbxSecurity-reporting8.6HIGHSQL Injection Vulnerability in FreePBX Module by FreePBX
CVE-2026-28210FreepbxSecurity-reporting8.6HIGHCommand Injection Vulnerability in FreePBX Affected by ElevenLabs Text-to-Speech Engine
CVE-2026-28209FreepbxSecurity-reporting7.5HIGHPrivilege Escalation Vulnerability in FreePBX API by FreePBX
CVE-2025-55210FreepbxApi2LOWSQL Injection Vulnerability in FreePBX tts Module
CVE-2025-67736FreepbxTts8.6HIGHLocal Privilege Escalation in FreePBX GUI by Asterisk Group Misconfiguration
CVE-2025-67722FreepbxFramework5.7MEDIUMAuthenticated Remote Code Execution in FreePBX 16 API Module
CVE-2024-58294FreepbxFreepbx👾🟡8.7HIGHWeak Default Password Vulnerability in FreePBX Endpoint Manager
CVE-2025-67513FreepbxEndpoint6.9MEDIUMAuthentication Bypass in FreePBX Endpoint Manager by FreePBX
CVE-2025-66039FreepbxFramework📈👾EPSS 32%📰9.3CRITICALAuthenticated SQL Injection Vulnerability in FreePBX Endpoint Module
CVE-2025-62173FreepbxRestapps8.6HIGHPost-Authentication Command Injection Vulnerability in FreePBX Endpoint Manager
CVE-2025-64328FreepbxFilestore👾🟡EPSS 84%🦅📰8.6HIGHAuthenticated Arbitrary File Upload Vulnerability in FreePBX Endpoint Manager
CVE-2025-61678FreepbxEndpointmanEPSS 21%8.6HIGHAuthenticated SQL Injection Vulnerability in FreePBX Endpoint Manager Module
CVE-2025-61675FreepbxEndpointEPSS 14%8.6HIGHReflected Cross-Site Scripting Vulnerability in FreePBX by FreePBX
CVE-2025-59429FreepbxCore8.5HIGHOS Command Execution Vulnerability in FreePBX Endpoint Manager
CVE-2025-59051FreepbxEndpoint8.6HIGHWeb-based Interface Vulnerability in FreePBX from Sangoma
CVE-2025-59056FreepbxFramework6.6MEDIUMArbitrary Command Execution in FreePBX by Authenticated Users
CVE-2025-55211FreepbxFramework6.3MEDIUMOAuth Private Key Vulnerability in FreePBX API Module
CVE-2025-55739FreepbxApi5.1MEDIUMStored Cross-Site Scripting in FreePBX Contact Manager Module
CVE-2025-55209FreepbxContactmanager5.1MEDIUMUnauthenticated Access Vulnerability in FreePBX by Sangoma Technologies
CVE-2025-57819FreepbxEndpoint🥇📈👾🟡EPSS 70%🦅📰10CRITICALUnsafe Access via Activation of Endpoint Manager Module
CVE-2024-47071FreepbxEndpointman6.8MEDIUMFreePBX arimanager Views cross site scripting
CVE-2019-25090FreepbxArimanager3.5LOWFreePBX voicemail page.voicemail.php cross site scripting
CVE-2021-4282FreepbxVoicemail3.5LOWFreePBX cdr Cdr.class.php ajaxHandler sql injection
CVE-2020-36630FreepbxCdr5.5MEDIUM