FreePBX Multiple Cross Site Scripting and Remote Command Execution Vulnerabilities

Bugtraq ID: 52630
Class: Input Validation Error
CVE: CVE-2012-4869
CVE-2012-4870
Remote: Yes
Local: No
Published: Mar 20 2012 12:00AM
Updated: Sep 06 2012 10:30PM
Credit: Martin Tschirsich
Vulnerable: freePBX freePBX 2.10
freePBX freePBX 2.9
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus