Vulnerabilities > Coalescent Systems

DATE CVE VULNERABILITY TITLE RISK
2007-03-03 CVE-2006-7107 Remote File Include vulnerability in Coalescent Systems Freepbx 2.1.3
PHP remote file inclusion vulnerability in upgrade.php in Coalescent Systems freePBX 2.1.3 allows remote attackers to execute arbitrary PHP code via a URL in the amp_conf[AMPWEBROOT] parameter.
network
low complexity
coalescent-systems
7.5
2006-12-04 CVE-2006-6244 Input Validation vulnerability in FreePBX
Coalescent Systems freePBX (formerly Asterisk Management Portal) before 2.2.0rc1 allows attackers to execute arbitrary commands via shell metacharacters in (1) CALLERID(name) or (2) CALLERID(number).
network
low complexity
coalescent-systems
7.5