FreePBX Emergency Checklist — Minimal immediate actions (copy/paste for chat/Slack) CVE-2025-57819
- Isolate
- Immediately block public access to Admin UI (80/443). Example (iptables):
- iptables -I INPUT -p tcp --dport 443 -s x.x.x.x -j ACCEPT # allow your admin IP
- iptables -I INPUT -p tcp --dport 443 -j DROP # drop all other 443
- iptables -I INPUT -p tcp --dport 80 -j DROP # drop HTTP
- If possible: place the PBX behind VPN or on a management VLAN.
- Confirm Endpoint module presence