CVE-2021-43405
35Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 36%
from disclosure to weapon3 days
Published on NVDNov 5
1st PoC+3d
exploitation probability
36%top 2% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
An issue was discovered in FusionPBX before 4.5.30. The fax_extension may have risky characters (it is not constrained to be numeric).
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/50505unverifiedcve_referencepacketstormsecurity.com/files/164795/FusionPBX-4.5.29-Remote-Code-Execution.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.