ZeroHour

CVE-2020-25611

CVSS 3.1
6.1 medium
EPSS
<1%p48
Published
()
Modified
Description

The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending arbitrary code due to improper input validation, aka XSS. Successful exploitation could allow an attacker to view user conference information.

Vendors
mitel
Products
micollab
Weakness
CWE-20, CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.