CVE-2025-57819

⚠ KEVEPSS 77.0%

Sangoma FreePBX Authentication Bypass Vulnerability

Added to CISA KEV: 8/29/2025

Description

Sangoma FreePBX contains an authentication bypass vulnerability due to insufficiently sanitized user-supplied data allows unauthenticated access to FreePBX Administrator leading to arbitrary database manipulation and remote code execution.

Affected packages (0)

No package mapping in OSV.