Missing access control in the backup system of Telesoft VitalPBX before 3.2.1 allows attackers to access the PJSIP and SIP extension credentials, cryptographic keys and voicemails files via unspecified vectors.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.arsouyes.org/blog/2022/2022-06-30-VitalPBX-0day |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published: 2022-06-24T15:20:01.000Z
Updated: 2026-07-09T00:18:52.994Z
Reserved: 2022-04-16T00:00:00.000Z
Link: CVE-2022-29330
No data.
Status : Modified
Published: 2022-06-24T16:15:09.617
Modified: 2026-07-09T01:17:27.877
Link: CVE-2022-29330
No data.