IP PBX Zero-Day RCE Exploit Offered on Cybercrime Forum
An underground threat actor is advertising a pre-authentication remote code execution (RCE) zero-day exploit targeting IP PBX software with over 10,000 active installations. Organizations using internet-exposed telephony systems must immediately secure their interfaces to prevent unauthorized administrative takeover.

