VYPR
Medium severity6.5NVD Advisory· Published Sep 29, 2022· Updated Jun 17, 2026

CVE-2021-43403

CVE-2021-43403

Description

An issue was discovered in FusionPBX before 4.5.30. The log_viewer.php Log View page allows an authenticated user to choose an arbitrary filename for download (i.e., not necessarily freeswitch.log in the intended directory).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:fusionpbx:fusionpbx:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:fusionpbx:fusionpbx:*:*:*:*:*:*:*:*range: <4.5.30
    • (no CPE)range: <4.5.30
  • FusionPBX/FusionPBXdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.