CVE-2025-57819
⚠ KEVEPSS 77.0%Sangoma FreePBX Authentication Bypass Vulnerability
Added to CISA KEV: 8/29/2025
Description
Sangoma FreePBX contains an authentication bypass vulnerability due to insufficiently sanitized user-supplied data allows unauthenticated access to FreePBX Administrator leading to arbitrary database manipulation and remote code execution.
Affected packages (0)
No package mapping in OSV.