Sangoma Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for Sangoma products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
1
In CISA KEV
1
Beyond CISA KEV
0
Sensor Observed
0
Virtual Patch Available
0
Sangoma KEVs Added by Year
Loading...
1 Sangoma KEV added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2019-19006
Sangoma FreePBX 115.0.16.26 and below, 14.0.13.11 and below, 13.0.197.13 and below have Incorrect Access Control. |
FreePBX | Confirmed | In CISA | 01 Jun 2026 |
Common Vulnerability Classes (CWE)
- CWE-287 — Improper Authentication 1
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology