CVE-2019-19367

Publication date

2019-11-27 19:19:24

Family

mitre

State

PUBLISHED

Description

A cross-site scripting (XSS) vulnerability in app/fax/fax_files.php in FusionPBX 4.4.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.