SSH Public Key Vulnerability in FreePBX 17.x
CVE-2026-73664
8.6HIGH
What is CVE-2026-73664?
The publicKeySave AJAX endpoint in FreePBX versions 17.0.5.34 to 17.0.10 allows an authenticated administrator to append SSH public keys directly to the Asterisk system user's authorized_keys file without rigorous enforcement of backup-only command restrictions. This can potentially grant unauthorized persistent shell access, enabling adversaries to execute arbitrary commands, access sensitive FreePBX data, modify crucial system files, and disrupt service operations. The issue has been rectified in version 17.0.11.
Affected Version(s)
backup >= 17.0.5.34, < 17.0.11
