Critical severity9.8CISA KEVNVD Advisory· Published Nov 21, 2019· Updated Jun 17, 2026
CVE-2019-19006
CVE-2019-19006
Description
Sangoma FreePBX 115.0.16.26 and below, 14.0.13.11 and below, 13.0.197.13 and below have Incorrect Access Control.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Sangoma/FreePBXdescription
Patches
Vulnerability mechanics
References
6- research.checkpoint.com/2020/inj3ctor3-operation-leveraging-asterisk-servers-for-monetization/nvdExploitThird Party Advisory
- community.freepbx.org/t/freepbx-security-vulnerability-sec-2019-001/62772nvdVendor Advisory
- wiki.freepbx.org/display/FOP/2019-11-20+Remote+Admin+Authentication+BypassnvdVendor Advisory
- pastebin.com/2CdsQMKWnvdBroken Link
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
- www.freepbx.org/category/blog/nvdProduct
News mentions
0No linked articles in our index yet.