Vulnerabilità ed exploit · Attacco ad app web

Metasploit Aggiunge Moduli Exploit per AVideo e FreePBX

Metasploit Framework 6.4.123 integra due nuovi exploit per AVideo Encoder (CVE-2026-29058) e FreePBX filestore (CVE-2025-64328).

1 fonte · 20 mar

CVE-2025-64328

NVD KEV

Sfruttamento noto · CISA KEV

CVSS 7.2 HIGH: freePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. EPSS 85% (100º percentile).

Data di correzione federale CISA 24 feb · data superata

CVE-2026-29058

NVD KEV

CVSS 9.8 CRITICAL: aVideo is a video-sharing Platform software. EPSS 2% (74º percentile).

Cronologia

Fonti

Part of the PlainSec briefing for 2026-03-21

Every edition of this story: Metasploit Aggiunge Moduli Exploit per AVideo e FreePBX

Altro da oggi