Back to News
Security NewsHighIncidentunauthorized access

900 Sangoma FreePBX Instances Infected With Web Shells

UnknownFeb 27, 2026(about 1 month ago)

900 Sangoma FreePBX instances were infected with web shells due to a post-authentication command injection vulnerability.

The attacks exploited a post-authentication command injection vulnerability in the endpoint manager’s interface. The post 900 Sangoma FreePBX Instances Infected With Web Shells appeared first on SecurityWeek .

Related News

Get Personalized Alerts

Track vendors and receive alerts when security incidents affect your supply chain.

What We Monitor

Security Incidents

Data breaches, ransomware, and unauthorized access

Vulnerabilities

CVEs and vendor security advisories

Compliance Updates

Regulatory changes and certification news

Legal News

Privacy laws and enforcement actions

Vendor Directory

Browse our directory of SaaS vendors with security documentation and compliance information.