CVE-2022-26651 | Digium Asterisk/Certified Asterisk up to 16.8-cert13/16.25.1/18.11.1/19.3.1 func_odbc sql injection (AST-2022-003 / EUVD-2022-31204)
A vulnerability was found in Digium Asterisk and Certified Asterisk up to 16.8-cert13/16.25.1/18.11.1/19.3.1 and classified as critical. This issue affects the function func_odbc. Such manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2022-26651. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.