Lucene search

K
osvGoogleOSV:CVE-2018-15891
HistoryJun 20, 2019 - 5:15 p.m.

CVE-2018-15891

2019-06-2017:15:09
Google
osv.dev
4

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.7%

An issue was discovered in FreePBX core before 3.0.122.43, 14.0.18.34, and 5.0.1beta4. By crafting a request for adding Asterisk modules, an attacker is able to store JavaScript commands in a module name.

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.7%

Related for OSV:CVE-2018-15891