VYPR

GUI

by VoIPmonitor

CVEs (2)

  • CVE-2022-24259CriFeb 4, 2022
    risk 0.64cvss 9.8epss 0.02

    An incorrect check in the component cdr.php of Voipmonitor GUI before v24.96 allows unauthenticated attackers to escalate privileges via a crafted request.

  • CVE-2022-24262HigFeb 4, 2022
    risk 0.57cvss 8.8epss 0.02

    The config restore function of Voipmonitor GUI before v24.96 does not properly check files sent as restore archives, allowing remote attackers to execute arbitrary commands via a crafted file in the web root.