Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-43695

issabelPBX version 2.11 is affected by a Cross Site Scripting (XSS) vulnerability. In file page.backup_restore.php, the exit function will terminate the script and print the message to the user. The message will contain $_REQUEST without sanitization, then there is a XSS vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 45.0%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2021-43695
  • Issabel » Pbx » Version: 2.11
    cpe:2.3:a:issabel:pbx:2.11


Contact Us

Shodan ® - All rights reserved