CVE-2019-19006

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
21/11/2019
Last modified:
24/08/2020

Description

Sangoma FreePBX 115.0.16.26 and below, 14.0.13.11 and below, 13.0.197.13 and below have Incorrect Access Control.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sangoma:freepbx:*:*:*:*:*:*:*:* 13.0.0.0 (including) 13.0.197.13 (including)
cpe:2.3:a:sangoma:freepbx:*:*:*:*:*:*:*:* 14.0.0.0 (including) 14.0.13.11 (including)
cpe:2.3:a:sangoma:freepbx:*:*:*:*:*:*:*:* 15.0.0.0 (including) 15.0.16.26 (including)