A critical security flaw in Issabel Framework, a webbased framework for the opensource unified communications PBX software, has come under active exploitation. The vulnerability in question is CVE202689026 CVSS v3.1 score 9.8CVSS v4.0 score 9.3, which can allow an unauthenticated remote attacker to execute arbitrary operating system OS commands by taking advantage of a hardcoded.📖 Read more.
🔗 Via "The Hacker News"
----------
👁️ Seen on @cibsecurity