Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2012-4869
Description:The callme_startcall function in recordings/misc/callme_page.php in FreePBX 2.9, 2.10, and earlier allows remote attackers to execute arbitrary commands via the callmenum parameter in a c action.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2012-4869
BugTraq ID: 52630
http://www.securityfocus.com/bid/52630
http://www.exploit-db.com/exploits/18649
http://www.exploit-db.com/exploits/18659
http://seclists.org/fulldisclosure/2012/Mar/234
http://packetstormsecurity.org/files/111028/FreePBX-2.10.0-Remote-Command-Execution-XSS.html
http://secunia.com/advisories/48463
XForce ISS Database: freepbx-callmepage-command-exec(74174)
https://exchange.xforce.ibmcloud.com/vulnerabilities/74174




© 1998-2025 E-Soft Inc. All rights reserved.