Critical severity9.8NVD Advisory· Published Dec 22, 2021· Updated Jun 17, 2026
CVE-2021-45461
CVE-2021-45461
Description
FreePBX, when restapps (aka Rest Phone Apps) 15.0.19.87, 15.0.19.88, 16.0.18.40, or 16.0.18.41 is installed, allows remote attackers to execute arbitrary code, as exploited in the wild in December 2021. The fixed versions are 15.0.20 and 16.0.19.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:sangoma:restapps:15.0.19.87:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:sangoma:restapps:15.0.19.87:*:*:*:*:*:*:*
- cpe:2.3:a:sangoma:restapps:15.0.19.88:*:*:*:*:*:*:*
- cpe:2.3:a:sangoma:restapps:16.0.18.40:*:*:*:*:*:*:*
- cpe:2.3:a:sangoma:restapps:16.0.18.41:*:*:*:*:*:*:*
- (no CPE)range: 15.0.19.87, 15.0.19.88, 16.0.18.40, 16.0.18.41
- FreePBX/restappsdescription
- Range: 15.0.19.87, 15.0.19.88, 16.0.18.40, 16.0.18.41
Patches
Vulnerability mechanics
References
3- community.freepbx.org/t/0-day-freepbx-exploit/80092nvdExploitIssue TrackingVendor Advisory
- community.freepbx.org/t/security-issue-potential-rest-phone-apps-rce/80109nvdVendor Advisory
- wiki.freepbx.org/display/FOP/2021-12-21+SECURITY%3A+Potential+Rest+Phone+Apps+RCEnvdVendor Advisory
News mentions
0No linked articles in our index yet.