Sangoma records
85 published records for vendor sangoma.
Researcher profile
- Entered KEV
- 4 · 4.7%
- Weaponized
- 7 · 8.2%
- Pre-auth RCE
- 11
- With a fix record
- 52.9%
- Median publish → KEV
- 68 days
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')15
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')8
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')6
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')5
- CWE-427 Uncontrolled Search Path Element3
- CWE-287 Improper Authentication3
The weakness classes this vendor ships most often: where to look.
CWEAll records
85 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
96Now | CVE-2025-57819Weaponized | FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCEsangoma · freepbx · CWE-89 | Critical10.0 | KEV | 85.5% | Aug 28, 2025 |
89Now | CVE-2025-64328Weaponized | FreePBX Administration GUI is Vulnerable to Authenticated Command Injectionsangoma · filestore · CWE-78 | High8.6 | KEV | 84.6% | Nov 7, 2025 |
86Now | CVE-2019-19006Weaponized | Sangoma FreePBX 115.0.16.26 and below, 14.0.13.11 and below, 13.0.197.13 and below have Incorrect Access Control.sangoma · freepbx · CWE-287 | Critical9.8 | KEV | 55.9% | Nov 21, 2019 |
73This week | CVE-2026-9586Weaponized | Unauthenticated SQL Injection Leading to Remote Code Execution in Switchvox SMBsangoma · switchvox · CWE-89 | Critical9.3 | KEV | 19.0% | Jul 17, 2026 |
53Plan | CVE-2014-7235Proof of concept | htdocs_ari/includes/login.php in the ARI Framework module/Asterisk Recording Interface (ARI) in FreePBX before 2.9.0.9, 2.10.x, and 2.11 beffreepbx · freepbx · CWE-94 | Critical10.0 | — | 43.3% | Oct 7, 2014 |
51Plan | CVE-2012-4869Weaponized | The callme_startcall function in recordings/misc/callme_page.php in FreePBX 2.9, 2.10, and earlier allows remote attackers to execute arbitrsangoma · freepbx · CWE-94 | High7.5 | — | 70.3% | Sep 6, 2012 |
46Plan | CVE-2014-1903Weaponized | admin/libraries/view.functions.php in FreePBX 2.9 before 2.9.0.14, 2.10 before 2.10.1.15, 2.11 before 2.11.0.23, and 12 before 12.0.1alpha22freepbx · freepbx · CWE-264 | High7.5 | — | 52.8% | Feb 18, 2014 |
45Plan | CVE-2021-45461No exploit | FreePBX, when restapps (aka Rest Phone Apps) 15.0.19.87, 15.0.19.88, 16.0.18.40, or 16.0.18.41 is installed, allows remote attackers to execsangoma · restapps | Critical9.8 | — | 21.7% | Dec 22, 2021 |
44Plan | CVE-2023-49294No exploit | Asterisk Path Traversal vulnerabilitydigium · asterisk · CWE-22 | High7.5 | — | 45.3% | Dec 14, 2023 |
40Plan | CVE-2021-37706No exploit | Potential integer underflow upon receiving STUN message in PJSIPteluu · pjsip · CWE-191 | Critical9.8 | — | 4.6% | Dec 22, 2021 |
40Plan | CVE-2022-23608No exploit | Use after free in PJSIPteluu · pjsip · CWE-416 | Critical9.8 | — | 4.0% | Feb 22, 2022 |
40Plan | CVE-2019-12148No exploit | The Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to an authentication bypass via an argument injection sangoma · session border controller firmware · CWE-88 | Critical9.8 | — | 3.5% | Oct 22, 2019 |
40Plan | CVE-2019-12147No exploit | The Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to Argument Injection via special characters in the ussangoma · session border controller firmware · CWE-88 | Critical9.8 | — | 2.6% | Oct 22, 2019 |
40Plan | CVE-2020-10666No exploit | The restapps (aka Rest Phone apps) module for Sangoma FreePBX and PBXact 13, 14, and 15 through 15.0.19.2 allows remote code execution via asangoma · restapps · CWE-77 | Critical9.8 | — | 2.2% | May 31, 2021 |
40Plan | CVE-2017-17430No exploit | Sangoma NetBorder / Vega Session Controller before 2.3.12-80-GA allows remote attackers to execute arbitrary commands via the web interface.sangoma · netborder\/vega session firmware · CWE-287 | Critical9.8 | — | 1.8% | Dec 7, 2017 |
40Plan | CVE-2008-6598No exploit | Multiple race conditions in WANPIPE before 3.3.6 have unknown impact and attack vectors related to "bri restart logic."sangoma · wanpipe · CWE-362 | Critical10.0 | — | 1.1% | Apr 3, 2009 |
39Monitor | CVE-2025-32105No exploit | A buffer overflow in the the Sangoma IMG2020 HTTP server through 2.3.9.6 allows an unauthenticated user to achieve remote code execution.sangoma · img2020 firmware · CWE-120 | Critical9.8 | — | 1.2% | Jun 3, 2025 |
39Monitor | CVE-2024-57520No exploit | Insecure Permissions vulnerability in asterisk v22 allows a remote attacker to execute arbitrary code via the action_createconfig function.sangoma · asterisk · CWE-732 | Critical9.8 | — | 1.0% | Feb 5, 2025 |
39Monitor | CVE-2020-36630No exploit | FreePBX cdr Cdr.class.php ajaxHandler sql injectionsangoma · freepbx · CWE-89 | Critical9.8 | — | 0.7% | Dec 25, 2022 |
38Monitor | CVE-2025-66039Weaponized | FreePBX Endpoint Manager Allows Unauthenticated Logins to Administrator Control Panel via Forged Basic Auth Headersangoma · freepbx · CWE-287 | Critical9.3 | — | 3.3% | Dec 9, 2025 |
37Monitor | CVE-2022-21723No exploit | Out-of-bounds read in multipart parsing in PJSIPteluu · pjsip · CWE-125 | Critical9.1 | — | 4.4% | Jan 26, 2022 |
37Monitor | CVE-2012-2186No exploit | Incomplete blacklist vulnerability in main/manager.c in Asterisk Open Source 1.8.x before 1.8.15.1 and 10.x before 10.7.1, Certified Asterisasterisk · open source | Critical9.0 | — | 3.6% | Aug 31, 2012 |
37Monitor | CVE-2026-46376Proof of concept | FreePBX: Unauthenticated Use of Hard-Coded Credentials Vulnerability in FreePBX UCP Interfacesangoma · freepbx · CWE-798 | Critical9.3 | — | 0.5% | May 29, 2026 |
36Monitor | CVE-2025-67736No exploit | Authenticated SQL Injection in FreePBX tts (Text To Speech) modulesangoma · freepbx · CWE-89 | High8.6 | — | 6.4% | Dec 15, 2025 |
35Monitor | CVE-2024-58294No exploit | FreePBX 16 Authenticated Remote Code Execution via API Modulesangoma · freepbx · CWE-78 | High8.7 | — | 3.6% | Dec 11, 2025 |
- CVE-2025-5781996Now
FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCE
CriticalCVSS 10.0KEVWeaponizedEPSS 85%sangoma · freepbxAug 28, 2025
- CVE-2025-6432889Now
FreePBX Administration GUI is Vulnerable to Authenticated Command Injection
HighCVSS 8.6KEVWeaponizedEPSS 85%sangoma · filestoreNov 7, 2025
- CVE-2019-1900686Now
Sangoma FreePBX 115.0.16.26 and below, 14.0.13.11 and below, 13.0.197.13 and below have Incorrect Access Control.
CriticalCVSS 9.8KEVWeaponizedEPSS 56%sangoma · freepbxNov 21, 2019
- CVE-2026-958673This week
Unauthenticated SQL Injection Leading to Remote Code Execution in Switchvox SMB
CriticalCVSS 9.3KEVWeaponizedEPSS 19%sangoma · switchvoxJul 17, 2026
- CVE-2014-723553Plan
htdocs_ari/includes/login.php in the ARI Framework module/Asterisk Recording Interface (ARI) in FreePBX before 2.9.0.9, 2.10.x, and 2.11 bef
CriticalCVSS 10.0Proof of conceptEPSS 43%freepbx · freepbxOct 7, 2014
- CVE-2012-486951Plan
The callme_startcall function in recordings/misc/callme_page.php in FreePBX 2.9, 2.10, and earlier allows remote attackers to execute arbitr
HighCVSS 7.5WeaponizedEPSS 70%sangoma · freepbxSep 6, 2012
- CVE-2014-190346Plan
admin/libraries/view.functions.php in FreePBX 2.9 before 2.9.0.14, 2.10 before 2.10.1.15, 2.11 before 2.11.0.23, and 12 before 12.0.1alpha22
HighCVSS 7.5WeaponizedEPSS 53%freepbx · freepbxFeb 18, 2014
- CVE-2021-4546145Plan
FreePBX, when restapps (aka Rest Phone Apps) 15.0.19.87, 15.0.19.88, 16.0.18.40, or 16.0.18.41 is installed, allows remote attackers to exec
CriticalCVSS 9.8No exploitEPSS 22%sangoma · restappsDec 22, 2021
- CVE-2023-4929444Plan
Asterisk Path Traversal vulnerability
HighCVSS 7.5No exploitEPSS 45%digium · asteriskDec 14, 2023
- CVE-2021-3770640Plan
Potential integer underflow upon receiving STUN message in PJSIP
CriticalCVSS 9.8No exploitEPSS 5%teluu · pjsipDec 22, 2021
- CVE-2022-2360840Plan
Use after free in PJSIP
CriticalCVSS 9.8No exploitEPSS 4%teluu · pjsipFeb 22, 2022
- CVE-2019-1214840Plan
The Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to an authentication bypass via an argument injection
CriticalCVSS 9.8No exploitEPSS 4%sangoma · session border controller firmwareOct 22, 2019
- CVE-2019-1214740Plan
The Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to Argument Injection via special characters in the us
CriticalCVSS 9.8No exploitEPSS 3%sangoma · session border controller firmwareOct 22, 2019
- CVE-2020-1066640Plan
The restapps (aka Rest Phone apps) module for Sangoma FreePBX and PBXact 13, 14, and 15 through 15.0.19.2 allows remote code execution via a
CriticalCVSS 9.8No exploitEPSS 2%sangoma · restappsMay 31, 2021
- CVE-2017-1743040Plan
Sangoma NetBorder / Vega Session Controller before 2.3.12-80-GA allows remote attackers to execute arbitrary commands via the web interface.
CriticalCVSS 9.8No exploitEPSS 2%sangoma · netborder\/vega session firmwareDec 7, 2017
- CVE-2008-659840Plan
Multiple race conditions in WANPIPE before 3.3.6 have unknown impact and attack vectors related to "bri restart logic."
CriticalCVSS 10.0No exploitEPSS 1%sangoma · wanpipeApr 3, 2009
- CVE-2025-3210539Monitor
A buffer overflow in the the Sangoma IMG2020 HTTP server through 2.3.9.6 allows an unauthenticated user to achieve remote code execution.
CriticalCVSS 9.8No exploitEPSS 1%sangoma · img2020 firmwareJun 3, 2025
- CVE-2024-5752039Monitor
Insecure Permissions vulnerability in asterisk v22 allows a remote attacker to execute arbitrary code via the action_createconfig function.
CriticalCVSS 9.8No exploitEPSS 1%sangoma · asteriskFeb 5, 2025
- CVE-2020-3663039Monitor
FreePBX cdr Cdr.class.php ajaxHandler sql injection
CriticalCVSS 9.8No exploitEPSS 1%sangoma · freepbxDec 25, 2022
- CVE-2025-6603938Monitor
FreePBX Endpoint Manager Allows Unauthenticated Logins to Administrator Control Panel via Forged Basic Auth Header
CriticalCVSS 9.3WeaponizedEPSS 3%sangoma · freepbxDec 9, 2025
- CVE-2022-2172337Monitor
Out-of-bounds read in multipart parsing in PJSIP
CriticalCVSS 9.1No exploitEPSS 4%teluu · pjsipJan 26, 2022
- CVE-2012-218637Monitor
Incomplete blacklist vulnerability in main/manager.c in Asterisk Open Source 1.8.x before 1.8.15.1 and 10.x before 10.7.1, Certified Asteris
CriticalCVSS 9.0No exploitEPSS 4%asterisk · open sourceAug 31, 2012
- CVE-2026-4637637Monitor
FreePBX: Unauthenticated Use of Hard-Coded Credentials Vulnerability in FreePBX UCP Interface
CriticalCVSS 9.3Proof of conceptEPSS 0%sangoma · freepbxMay 29, 2026
- CVE-2025-6773636Monitor
Authenticated SQL Injection in FreePBX tts (Text To Speech) module
HighCVSS 8.6No exploitEPSS 6%sangoma · freepbxDec 15, 2025
- CVE-2024-5829435Monitor
FreePBX 16 Authenticated Remote Code Execution via API Module
HighCVSS 8.7No exploitEPSS 4%sangoma · freepbxDec 11, 2025