CVE-2014-5109: Netfortris Trixbox

High severity, CVSS 7.5. EPSS: 3.4% chance of exploitation in the next 30 days.

SQL injection vulnerability in maint/modules/endpointcfg/endpoint_generic.php in Fonality trixbox allows remote attackers to execute arbitrary SQL commands via the mac parameter in a Submit action.

Affected products

  • Netfortris Trixbox: affected versions not specified

Published 2014-07-28. Last modified 2026-06-17.