| OSVDB ID | Disclosure Date | Title |
|
80543
Description:
FreePBX contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'login' parameter upon submission to the /recordings/index.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-03-22
|
FreePBX /recordings/index.php login Parameter XSS
|
|
54262
Description:
(Description Provided by CVE) : Multiple cross-site request forgery (CSRF) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote attackers to hijack the authentication of admins for requests that create a new admin account or have unspecified other impact.
|
2009-05-06
|
FreePBX Admin User Creation CSRF
|
|
61918
Description:
Unknown / Incomplete
|
2010-01-15
|
FreePBX admin/config.php Cleartext Password Disclosure
|
|
35316
Description:
A remote command execution vulnerability exists in the Music On Hold module of the FreePBX 2.2.x web admin interface.
|
2007-04-21
|
freePBX admin/config.php del Variable Arbitrary Command Execution
|
|
61919
Description:
FreePBX contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'admin/config.php' script not properly sanitizing user-supplied input to the 'extdisplay' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-01-15
|
FreePBX admin/config.php extdisplay Parameter SQL Injection
|
|
68181
Description:
FreePBX contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'admin/config.php' script not properly sanitizing user-supplied input to the 'src', 'dst', and 'channel' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-09-21
|
FreePBX admin/config.php Multiple Parameter SQL Injection
|
|
61357
Description:
FreePBX contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'tech' parameter upon submission to the 'admin/config.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2009-12-24
|
FreePBX admin/config.php tech Parameter XSS
|
|
92856
Description:
FreePBX contains a flaw in the Backup module that is due to the program failing to properly sanitize commands that begin with a single quote character passed via the 'dir' parameter to the page.backup.php file. This may allow a remote attacker to bypass the protections provided by the strpos() function and execute arbitrary commands.
|
2013-04-27
|
FreePBX Backup Module page.backup.php dir Parameter Remote Command Execution
|
|
72659
Description:
Unknown / Incomplete
|
2010-09-21
|
FreePBX call-comp.php Multiple Parameter SQL Injection
|
|
30783
Description:
(Description Provided by CVE) : Coalescent Systems freePBX (formerly Asterisk Management Portal) before 2.2.0rc1 allows attackers to execute arbitrary commands via shell metacharacters in (1) CALLERID(name) or (2) CALLERID(number).
|
2006-11-27
|
freePBX CALLERID name/num Unspecified Issue
|
|
80544
Description:
FreePBX contains a flaw related to the callme_page.php script. The issue is triggered when input passed via the 'callmenum' parameter is not properly sanitized. This may allow a remote attacker to execute arbitrary shell commands.
|
2012-03-22
|
FreePBX callme_page.php callmenum Parameter Remote Shell Command Execution
|
|
52727
Description:
Unknown / Incomplete
|
2007-10-20
|
FreePBX cdr_addon_mysql.c Call Detail Record XSS
|
|
54260
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote attackers to inject arbitrary web script or HTML via the (1) display parameter to reports.php, the (2) order and (3) extdisplay parameters to config.php, and the (4) sort parameter to recordings/index.php. NOTE: some of these details are obtained from third party information.
|
2009-05-06
|
FreePBX config.php Multiple Parameter XSS
|
|
80367
Description:
FreePBX contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the $type, $action, $old_custom_dest, and $custom_dest parameters upon submission to the config.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-25
|
FreePBX config.php Multiple Parameter XSS
|
|
61920
Description:
Unknown / Incomplete
|
2010-01-15
|
FreePBX Inbound Route Description XSS
|
|
80539
Description:
FreePBX contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'context' parameter upon submission to the index_amp.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-03-22
|
FreePBX index_amp.php context Parameter XSS
|
|
80357
Description:
FreePBX contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via the rendering of HTML in the log file. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-11-26
|
FreePBX Log File HTML Rendering XSS
|
|
35315
Description:
Persistent cross site scripting is possible in FreePBX 2.2.x due to no escaping of html code in the Log monitor module for the admin web interface.
|
2007-04-19
|
freePBX Log Injection asterisk-full-log.php XSS
|
|
54263
Description:
(Description Provided by CVE) : FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, generates different error messages for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.
|
2009-05-06
|
FreePBX Login Error Message User Enumeration
|
|
54261
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote attackers to inject arbitrary web script or HTML via the (1) display parameter to reports.php, the (2) order and (3) extdisplay parameters to config.php, and the (4) sort parameter to recordings/index.php. NOTE: some of these details are obtained from third party information.
|
2009-05-06
|
FreePBX recordings/index.php sort Parameter XSS
|
|
54259
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, allow remote attackers to inject arbitrary web script or HTML via the (1) display parameter to reports.php, the (2) order and (3) extdisplay parameters to config.php, and the (4) sort parameter to recordings/index.php. NOTE: some of these details are obtained from third party information.
|
2009-05-06
|
FreePBX reports.php display Parameter XSS
|
|
68240
Description:
(Description Provided by CVE) : Directory traversal vulnerability in page.recordings.php in the System Recordings component in the configuration interface in FreePBX 2.8.0 and earlier allows remote authenticated administrators to create arbitrary files via a .. (dot dot) in the usersnum parameter to admin/config.php, as demonstrated by creating a .php file under the web root.
|
2010-09-23
|
FreePBX System Recordings Component admin/config.php usersnum Parameter Traversal Arbitrary File Upload
|
|
34694
Description:
freePBX contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'upgrade.php' script not properly sanitizing user input supplied to the 'amp_conf[AMPWEBROOT]' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2006-10-28
|
freePBX upgrade.php amp_conf[AMPWEBROOT] Parameter Remote File Inclusion
|
|
61358
Description:
FreePBX contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'Description' parameter upon submission to the 'Zap Channel Addition' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2009-12-24
|
FreePBX Zap Channel Addition Description Parameter XSS
|
|
63558
Description:
FreePHPBlogSoftware contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'default_theme.php' script not properly sanitizing user input supplied to the 'phpincdir' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2010-04-06
|
FreePHPBlogSoftware default_theme.php phpincdir Parameter Remote File Inclusion
|
|
41587
Description:
(Description Provided by CVE) : Multiple directory traversal vulnerabilities in freePHPgallery 0.6 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang cookie to (1) comment.php, (2) index.php, and (3) show.php.
|
2008-02-14
|
freePHPgallery comment.php lang Parameter Traversal Local File Inclusion
|
|
41588
Description:
(Description Provided by CVE) : Multiple directory traversal vulnerabilities in freePHPgallery 0.6 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang cookie to (1) comment.php, (2) index.php, and (3) show.php.
|
2008-02-14
|
freePHPgallery index.php lang Parameter Traversal Local File Inclusion
|
|
41589
Description:
(Description Provided by CVE) : Multiple directory traversal vulnerabilities in freePHPgallery 0.6 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang cookie to (1) comment.php, (2) index.php, and (3) show.php.
|
2008-02-14
|
freePHPgallery show.php lang Parameter Traversal Local File Inclusion
|
|
82894
Description:
FreePost contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the edit.php script not properly sanitizing user-supplied input to the 'post' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-06-10
|
FreePost edit.php post Parameter SQL Injection
|
|
82895
Description:
FreePost contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via the text body upon submission to the edit.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-06-10
|
FreePost edit.php Text Body XSS
|