Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 10 Jun 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Freeswitch
Freeswitch freeswitch |
|
| CPEs | cpe:2.3:a:freeswitch:freeswitch:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Freeswitch
Freeswitch freeswitch |
Tue, 09 Jun 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Signalwire
Signalwire freeswitch |
|
| Vendors & Products |
Signalwire
Signalwire freeswitch |
Tue, 09 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version 1.11.1, mod_verto's check_auth userauth branch wrote request-supplied userVariables into the connection state before comparing the supplied password. The writes are append-only and the connection is not closed on a failed compare, so values declared on bad-password attempts persisted on the same WebSocket and carried into a subsequent successful login on that connection. This issue has been patched in version 1.11.1. | |
| Title | FreeSWITCH: Pre-authentication `userVariables` injection in `mod_verto` | |
| Weaknesses | CWE-287 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-06-09T16:53:15.989Z
Reserved: 2026-06-01T22:03:19.640Z
Link: CVE-2026-49848
Updated: 2026-06-09T16:52:52.412Z
Status : Analyzed
Published: 2026-06-09T17:17:48.460
Modified: 2026-06-10T15:06:53.767
Link: CVE-2026-49848
No data.
OpenCVE Enrichment
Updated: 2026-06-09T19:00:15Z