| |
Vulnerability CVE-2023-0486
Published: 2023-04-04 Modified: 2023-04-05
| Description: |
VitalPBX version 3.2.3-8 allows an unauthenticated external attacker to obtain the instance's administrator account via a malicious link. This is possible because the application is vulnerable to XSS. |
References: |
https://fluidattacks.com/advisories/smith/
https://vitalpbx.com/
|
|
|
closedb();
?>
Copyright 2026, cxsecurity.com
|
|
|