Fonality
3 CVEs tracked since 2016. Since Jun 2016, none of them reached CISA KEV.
Fonality CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2016-06 | 3 | 0 |
Products
The products that kept showing up in Fonality's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 4 most recently published vulnerabilities affecting Fonality.
- CVE-2020-7351Fonality Trixbox CE Post-Authentication Command Injection7.3
- CVE-2016-2362Fonality (previously trixbox Pro) 12.6 through 14.1i before 2016-06-01 has a hardcoded password for the FTP account, which allows remote attackers to obtain access via a (1) FTP or (2) SSH connection.9.8
- CVE-2016-2363Fonality (previously trixbox Pro) 12.6 through 14.1i before 2016-06-01 uses weak permissions for the /var/www/rpc/surun script, which allows local users to obtain root access for unspecified comman...7.8
- CVE-2016-2364The Chrome HUDweb plugin before 2016-05-05 for Fonality (previously trixbox Pro) 12.6 through 14.1i uses the same hardcoded private key across different customers' installations, which allows remot...7.5
The record
- Peak rank
- #48 in Jun 2016
- Busiest month shown
- Jun 2016, 3 CVEs
- Months with a KEV entry
- 0 since Jun 2016
- Monthly snapshots
- 1 since 2016