CVE-2020-21055: Fusionpbx
Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.
A Directory Traversal vulnerability exists in FusionPBX 4.5.7 allows malicoius users to rename any file of the system.via the (1) folder, (2) filename, and (3) newfilename variables in app\edit\filerename.php.
Affected products
- Fusionpbx Fusionpbx: version 4.5.7 only
Published 2021-05-20. Last modified 2026-06-17.