Description
Sangoma FreePBX 1805 through 2203 on Linux contains hardcoded credentials for the Asterisk REST Interface (ARI), which allows remote attackers to reconfigure Asterisk and make external and internal calls via HTTP and WebSocket requests sent to the API.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-30361 | Sangoma FreePBX 1805 through 2203 on Linux contains hardcoded credentials for the Asterisk REST Interface (ARI), which allows remote attackers to reconfigure Asterisk and make external and internal calls via HTTP and WebSocket requests sent to the API. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T15:46:39.284Z
Reserved: 2023-02-26T00:00:00.000Z
Link: CVE-2023-26566
Updated: 2024-08-02T11:53:54.046Z
Status : Deferred
Published: 2024-05-14T12:39:11.817
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-26566
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:15:00Z
Weaknesses
EUVD