CVE-2025-30004 | Xorcom CompletePBX up to 5.2.34 Administrator Task Scheduler os command injection (EUVD-2025-8863)
A vulnerability classified as critical was found in Xorcom CompletePBX up to 5.2.34. Affected by this issue is some unknown functionality of the component Administrator Task Scheduler. Such manipulation leads to os command injection.
This vulnerability is traded as CVE-2025-30004. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.