VYPR
Unrated severityNVD Advisory· Published Apr 30, 2007· Updated Apr 23, 2026

CVE-2007-2350

CVE-2007-2350

Description

admin/config.php in the music-on-hold module in freePBX 2.2.x allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in the del parameter.

Affected products

1
  • cpe:2.3:a:freepbx:freepbx:*:*:*:*:*:*:*:*
    Range: <=2.2.1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.