ZeroHour

CVE-2022-29330

PoC
CVSS 3.1
4.9 medium
EPSS
<1%p59
Published
()
Modified
Description

Missing access control in the backup system of Telesoft VitalPBX before 3.2.1 allows attackers to access the PJSIP and SIP extension credentials, cryptographic keys and voicemails files via unspecified vectors.

Vendors
vitalpbx
Products
vitalpbx
Weakness
CWE-330
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.