← Back

Axon Pbx

axon_pbx

Vendor: Nch • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nch
1Axon Pbx
Jun 17, 2026
Jul 25, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
NCH Axon PBX v2.22 and earlier allows path traversal for file deletion via the logdelete?file=/.. substring.
1Nch
1Axon Pbx
Jun 17, 2026
Jul 25, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
NCH Axon PBX v2.22 and earlier allows path traversal for file disclosure via the logprop?file=/.. substring.
1Nch
1Axon Pbx
Nov 21, 2024
Jun 1, 2018
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
There is a reflected XSS vulnerability in AXON PBX 2.02 via the "AXON->Auto-Dialer->Agents->Name" field. The vulnerability exists due to insufficient filtration of user-supplied data. A remote attacker can execute arbitr...Show more
There is a reflected XSS vulnerability in AXON PBX 2.02 via the "AXON->Auto-Dialer->Agents->Name" field. The vulnerability exists due to insufficient filtration of user-supplied data. A remote attacker can execute arbitrary HTML and script code in a browser in the context of the vulnerable application.Show less
1Nch
1Axon Pbx
Nov 21, 2024
Jun 1, 2018
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
AXON PBX 2.02 contains a DLL hijacking vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on a targeted system. The vulnerability exists because a DLL file is loaded by 'pbxsetup...Show more
AXON PBX 2.02 contains a DLL hijacking vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code on a targeted system. The vulnerability exists because a DLL file is loaded by 'pbxsetup.exe' improperly.Show less