CVE-2015-1513

SIPhone Enterprise PBX - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in SIPhone Enterprise PBX allows remote attackers to execute arbitrary SQL commands via the Username.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/100582

Scores

EPSS 0.0188
EPSS Percentile 77.2%

Details

CWE
CWE-89
Status published
Products (1)
siphon/siphone_enterprise_pbx
Published Feb 06, 2015
Tracked Since Feb 18, 2026