900+ Sangoma FreePBX Instances Compromised in Ongoing Web Shell AttacksThe Hacker News·Mar 4, 16:55 UTC · Mar 4, 2026Exploit / PoC in the wildCVE-2025-6432860
CVE-2025-64328 exploitation impacts 900 Sangoma FreePBX instancesSecurity Affairs·Mar 1, 10:01 UTC · Mar 1, 2026Vulnerability in the wildCVE-2025-6432860
U.S. CISA adds SolarWinds Web Help Desk, Sangoma FreePBX, and GitLab flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 3, 21:06 UTC · Feb 3, 2026Exploit / PoC in the wildCVE-2019-19006CVE-2021-39935CVE-2025-40551+1 CVEs60
Digium Phones Under Attack: Insight Into the Web Shell ImplantPalo Alto Unit 42·Jun 5, 20:19 UTC · Jun 5, 2024VulnerabilityCVE-2021-4546147
Hackers Targeting VoIP Servers By Exploiting Digium Phone SoftwareThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2022VulnerabilityCVE-2021-4546147