CVE-2023-26567: Sangoma FreePBX Linux 7
High severity, CVSS 8.1. EPSS: 0.6% chance of exploitation in the next 30 days.
Sangoma FreePBX 1805 through 2302 (when obtained as a ,.ISO file) places AMPDBUSER, AMPDBPASS, AMPMGRUSER, and AMPMGRPASS in the list of global variables. This exposes cleartext authentication credentials for the Asterisk Database (MariaDB/MySQL) and Asterisk Manager Interface. For example, an attacker can make a /ari/asterisk/variable?variable=AMPDBPASS API call.
Affected products
- Sangoma FreePBX Linux 7: version 1805 only; version 1904 only; version 1910 only; version 2002 only; version 2008 only; version 2011 only; …
Published 2023-04-26. Last modified 2026-06-17.