Vulnerabilities > Sangoma > Freepbx > 15.0.20

DATE CVE VULNERABILITY TITLE RISK
2019-12-06 CVE-2019-19552 Cross-site Scripting vulnerability in Sangoma Freepbx 13.0/13.0.0.0/13.0.1
In userman 13.0.76.43 through 15.0.20 in Sangoma FreePBX, XSS exists in the user management screen of the Administrator web site, i.e., the/admin/config.php?display=userman URI.
network
sangoma CWE-79
3.5
2019-12-06 CVE-2019-19551 Cross-site Scripting vulnerability in Sangoma Freepbx 13.0/13.0.0.0/13.0.1
In userman 13.0.76.43 through 15.0.20 in Sangoma FreePBX, XSS exists in the User Management screen of the Administrator web site.
network
sangoma CWE-79
3.5