Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-42260 | OSS Endpoint Manager is an endpoint manager module for FreePBX. OSS Endpoint Manager module activation can allow authenticated web users unauthorized access to read system files with the permissions of the webserver process. This vulnerability is fixed in 14.0.4. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 01 Oct 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Freepbx
Freepbx endpoint Manager |
|
| CPEs | cpe:2.3:a:freepbx:endpoint_manager:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Freepbx
Freepbx endpoint Manager |
|
| Metrics |
ssvc
|
Tue, 01 Oct 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OSS Endpoint Manager is an endpoint manager module for FreePBX. OSS Endpoint Manager module activation can allow authenticated web users unauthorized access to read system files with the permissions of the webserver process. This vulnerability is fixed in 14.0.4. | |
| Title | OSS Endpoint Manager allows unauthorized access to read system files | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-10-01T16:15:01.398Z
Reserved: 2024-09-17T17:42:37.029Z
Link: CVE-2024-47071
Updated: 2024-10-01T16:11:09.553Z
Status : Awaiting Analysis
Published: 2024-10-01T16:15:09.637
Modified: 2024-10-04T13:51:25.567
Link: CVE-2024-47071
No data.
OpenCVE Enrichment
No data.
EUVD