
Critical FreePBX Flaws Let Unauthenticated Attackers Execute Commands and Hijack Admin Accounts
Sangoma has patched two critical vulnerabilities in FreePBX that allow unauthenticated remote attackers to execute arbitrary commands and take over administrator accounts, prompting a “Red” urgency rating from the project’s security team. Organizations running internet-facing FreePBX 16 or 17 deployments are urged to patch immediately. The first flaw, tracked as GHSA-37j8-fhxx-9vhp, affects the User Control […]
The post Critical FreePBX Flaws Let Unauthenticated Attackers Execute Commands and Hijack Admin Accounts appeared first on Cyber Security News.