Cymmetria / honeycomb_plugins

The plugin repository for Honeycomb, the honeypot framework by Cymmetria
MIT License
26 stars 14 forks source link

FreePBX honeypot #34

Open Sleeptime17 opened 6 years ago

Sleeptime17 commented 6 years ago

FreePBX 13.0.x < 13.0.188 should be vulnerable to:

EDB-ID: 40434 (RCE) for FreePBX < 13.0.188 EDB-ID: 40232 (RCE/PE) for FreePBX 13/14 (System Recordings Module versions: 13.0.1beta1 - 13.0.26) EDB-ID: 40614 (RCE/PE) for FreePBX 13/14 (System Recordings Module versions: 13.0.1beta1 - 13.0.26)

and there's also: CVE-2014-7235 (RCE) for FreePBX < 2.9.0.9, FreePBX 2.10.x, FreePBX < 2.11.1.5

omercnet commented 6 years ago

FreePBX is quite complicated, this is another good candidate for a docker based service