Directory Traversal Vulnerability in FusionPBX by FusionPBX
CVE-2020-21057
8.1HIGH
What is CVE-2020-21057?
The FusionPBX 4.5.7 version is susceptible to a directory traversal issue, permitting a remote attacker to exploit the 'folder' variable in app/edit/folderdelete.php. This flaw can lead to unauthorized deletion of folders on the system, potentially compromising sensitive data or disrupting service. It is essential for users of FusionPBX to implement security measures to mitigate this risk and ensure proper access controls are in place.
