The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending arbitrary code due to improper input validation, aka XSS. Successful exploitation could allow an attacker to view user conference information.
References
Link | Resource |
---|---|
https://www.mitel.com/support/security-advisories | Vendor Advisory |
https://www.mitel.com/support/security-advisories | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2020-12-18 08:15
Updated : 2024-11-21 05:18
NVD link : CVE-2020-25611
Mitre link : CVE-2020-25611
CVE.ORG link : CVE-2020-25611
JSON object : View
Products Affected
mitel
- micollab