CVE-2021-43405: High severity fusionpbx vulnerability
Published Nov 5, 2021
·Updated
An issue was discovered in FusionPBX before 4.5.30. The faxextension may have risky characters (it is not constrained to be numeric).
Affected Software
1 affected component
FusionPBX Fusionpbx<4.5.30
Remediation
Event History
Nov 5, 2021
CVE Published
via MITRE·05:36 PM
Data Sourced
via MITRE·05:36 PM
Description
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-43405.
2
What is the severity level of CVE-2021-43405?
The severity level of CVE-2021-43405 is high.
3
What is the affected software?
The affected software is FusionPBX before version 4.5.30.
4
What is the risk associated with the fax_extension in FusionPBX?
The fax_extension in FusionPBX may have risky characters and is not constrained to be numeric.
5
Is there a fix available for CVE-2021-43405?
Yes, the fix is available in FusionPBX version 4.5.30.