Sangoma FreePBX Administrative Authentication Bypass (CVE-2019-19006)
Analysis of CVE-2019-19006, an improper authentication vulnerability in Sangoma FreePBX that may allow unauthorized access to administrative services.
Read analysis →Vulnerability Assurance / Intelligence
Analysis of CVE-2019-19006, an improper authentication vulnerability in Sangoma FreePBX that may allow unauthorized access to administrative services.
Read analysis →Analysis of a deserialization vulnerability in SolarWinds Web Help Desk that allows unauthenticated remote code execution, including remediation priorities and validation methods.
Read analysis →A code injection vulnerability in Ivanti Endpoint Manager Mobile (EPMM) allows for unauthenticated remote code execution. Defenders must prioritize vendor mitigations and conduct compromise assessments on internet-facing instances.
Read analysis →An authentication bypass vulnerability in multiple Fortinet products allows attackers with a FortiCloud account to access devices registered to other accounts when SSO is enabled.
Read analysis →An integer overflow in the Linux Kernel's create_elf_tables() function may allow local unprivileged users to escalate privileges via SUID binaries. This analysis focuses on identifying affected assets and verifying vendor-specific remediation.
Read analysis →Analysis of CVE-2025-52691 in SmarterTools SmarterMail, a vulnerability allowing unauthenticated arbitrary file upload and potential remote code execution currently utilized in ransomware campaigns.
Read analysis →An authentication bypass in the SmarterMail password reset API allows unauthenticated attackers to reset administrator passwords, leading to full system compromise. This vulnerability is currently leveraged by ransomware campaigns.
Read analysis →A critical argument injection vulnerability in GNU InetUtils telnetd allows remote authentication bypass via the USER environment variable. This analysis details exposure paths and verification of remediation.
Read analysis →Analysis of CVE-2026-21509, a security feature bypass vulnerability in Microsoft Office affecting multiple versions, including those nearing or at end-of-life.
Read analysis →Understand exposure, prioritize the response, and define evidence for the outcome.