CVE-2026-72578 | FreePBX 17.0 Ajax Ajax.class.php cross-site request forgery
A vulnerability described as problematic has been identified in FreePBX 17.0. Impacted is an unknown function of the file amp_conf/htdocs/admin/libraries/BMO/Ajax.class.php of the component Ajax. Such manipulation leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2026-72578. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More