Fusionpbx · Fusionpbx · CVE-2022-35153
**Name of the Vulnerable Software and Affected Versions**
FusionPBX version 5.0.1
**Description**
A command injection issue was found in FusionPBX via the /fax/fax send.php endpoint. This allows for potential command execution.
**Recommendations**
For FusionPBX version 5.0.1, update to a version that contains a fix for this issue, as using the current version poses a command injection risk. At the moment, there is no information about a newer version that contains a fix for this vulnerability.