3CX – Vulnerability Update

What We Know

Early this morning 3CX informed partners and customers that our electron windows app shipped in Update 7, version numbers 18.12.407 & 18.12.416, included a severe security issue. 3CX have since advised that the 3CX Mac App version numbers 18.11.1213, 18.12.402, 18.12.407 & 18.12.416 have also been affected. Fortunately, anti-virus vendors flagged the executable 3CXDesktopApp.exe and blocked it.

3CX has appointed Mandiant a renowned American cybersecurity firm and subsidiary of Google – and the market leader in threat intelligence. With their help 3CX will be able to review this incident in full.

Articles

CrowdStrike

Huntress


What You Can Do

How to Uninstall the desktop application:

Follow these steps to uninstall the 3CX Desktop App for Mac or Windows

For Windows:

  1. Start
  2. Type “Control Panel”, Enter
  3. Select “Programs and Features”
  4. Find 3CX Desktop App, select and press “Uninstall”.

On Mac:

  1. Go to “Applications”
  2. Tap on “3CX Desktop APP”
  3. Right click then “Move to Bin”
  4. Ensure that it isn’t also present on Desktop otherwise delete it from there as well.
  5. Empty the Bin.

3CX Web App Access

After uninstalling the desktop – you may require access to 3CX via the web app.

  1. Go to the “Your User Account on your New 3CX System” email.
  2. Click on your web client URL, e.g. https://mycompany.3cx.com/webclient/
  3. Log in using the credentials in your email

Please e-mail [email protected] if you require a new welcome e-mail to complete the setup process.

For information setting up the web client as a “Web Application” please visit 3CX Web Client Manual.

Privacy Settings
We use cookies to enhance your experience while using our website. If you are using our Services via a browser you can restrict, block or remove cookies through your web browser settings. We also use content and scripts from third parties that may use tracking technologies. You can selectively provide your consent below to allow such third party embeds. For complete information about the cookies we use, data we collect and how we process them, please check our Privacy Policy
Youtube
Consent to display content from Youtube
Vimeo
Consent to display content from Vimeo
Google Maps
Consent to display content from Google