[nsp-sec] Trixbox vulnerability.

Smith, Donald Donald.Smith at qwest.com
Tue Feb 3 17:29:04 EST 2009


As the result of a report to the ISC handlers of trixbox being exploited
to host vishing calls, we have found a serious vulnerability (remote
password disclosure followed by remote control of the system) in the CE
version of trixbox. Does anyone have a security/cert contact there.
I don't want to use their forum as that is public:(

	

H8Hz
Donald.Smith at qwest.com gcia



More information about the nsp-security mailing list