CVE-2013-10043Disclosure

LOWCVSS 9.5 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability exists in OAstium VoIP PBX astium-confweb-2.1-25399 and earlier, where improper input validation in the logon.php script allows an attacker to bypass authentication via SQL injection. Once authenticated as an administrator, the attacker can upload arbitrary PHP code through the importcompany field in import.php, resulting in remote code execution. The malicious payload is injected into /usr/local/astium/web/php/config.php and executed with root privileges by triggering a configuration reload via sudo /sbin/service astcfgd reload. Successful exploitation leads to full system compromise.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89CWE-434

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-04-07: 1Technical Details · 2026-04-07: 104-07
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2013-10043: Astium VOIP PBX <= 2.1 SQL Injec... SQL injection in logon.php bypasses auth, then file upload drops PHP shells into config.php with root execution - ancie... https://zerodaysignal.com/vulnerability/CVE-2013-10043 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The post announces CVE-2013-10043, detailing a SQL injection that allows authentication bypass and remote code execution via file upload, but offers no PoC code, exploit tool, or patch information.

    0100056
    204 followersView on X

Explore more