VYPR

Phpnuxbill

by Hotspotbilling

CVEs (3)

  • CVE-2026-108107CriOct 9, 2026
    risk 0.64cvss 9.8epss —

    PHPNuxBill through 2025.3.20 contains an unauthenticated SQL injection vulnerability in the radius.php FreeRADIUS REST endpoint that interpolates request parameters into whereRaw() queries. Attackers can send crafted username, macAddr or nasid parameters to the accounting or…

  • CVE-2026-108109CriOct 9, 2026
    risk 0.52cvss 9.1epss —

    PHPNuxBill through 2025.3.20 contains an account takeover vulnerability in the customer password reset flow in system/controllers/forgot.php that allows unauthenticated attackers to brute-force the 6-digit otp_code. Attackers knowing a customer username can guess the code…

  • CVE-2026-108108HigOct 9, 2026
    risk 0.46cvss 7.1epss —

    PHPNuxBill through 2025.3.20 contains an authentication bypass vulnerability in RADIUS CHAP verification because Password::chap_verify() returns true when the supplied response does not match. Attackers who know a valid customer or PPPoE username can log in through MikroTik…