FreePBX Authentication Bypass Exposed via Misconfigured Webserver AUTHTYPE
FreePBX patched 2025 flaws allowing SQL injection, file upload attacks, and an auth bypass only when webserver AUTHTYPE was enabled.
More info
