7.5

CVE-2020-13617

The Web UI component of Mitel MiVoice 6800 and 6900 series SIP Phones with firmware before 5.1.0.SP5 could allow an unauthenticated attacker to expose sensitive information due to improper memory handling during failed login attempts.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mitel6863 Firmware Version <= 5.0
   Mitel6863 Version-
Mitel6863 Firmware Version5.1 Update-
   Mitel6863 Version-
Mitel6863 Firmware Version5.1 Updatesp1
   Mitel6863 Version-
Mitel6863 Firmware Version5.1 Updatesp2
   Mitel6863 Version-
Mitel6863 Firmware Version5.1 Updatesp3
   Mitel6863 Version-
Mitel6863 Firmware Version5.1 Updatesp4
   Mitel6863 Version-
Mitel6865 Firmware Version <= 5.0
   Mitel6865 Version-
Mitel6865 Firmware Version5.1 Update-
   Mitel6865 Version-
Mitel6865 Firmware Version5.1 Updatesp1
   Mitel6865 Version-
Mitel6865 Firmware Version5.1 Updatesp2
   Mitel6865 Version-
Mitel6865 Firmware Version5.1 Updatesp3
   Mitel6865 Version-
Mitel6865 Firmware Version5.1 Updatesp4
   Mitel6865 Version-
Mitel6867 Firmware Version <= 5.0
   Mitel6867 Version-
Mitel6867 Firmware Version5.1 Update-
   Mitel6867 Version-
Mitel6867 Firmware Version5.1 Updatesp1
   Mitel6867 Version-
Mitel6867 Firmware Version5.1 Updatesp2
   Mitel6867 Version-
Mitel6867 Firmware Version5.1 Updatesp3
   Mitel6867 Version-
Mitel6867 Firmware Version5.1 Updatesp4
   Mitel6867 Version-
Mitel6869 Firmware Version <= 5.0
   Mitel6869 Version-
Mitel6869 Firmware Version5.1 Update-
   Mitel6869 Version-
Mitel6869 Firmware Version5.1 Updatesp1
   Mitel6869 Version-
Mitel6869 Firmware Version5.1 Updatesp2
   Mitel6869 Version-
Mitel6869 Firmware Version5.1 Updatesp3
   Mitel6869 Version-
Mitel6869 Firmware Version5.1 Updatesp4
   Mitel6869 Version-
Mitel6873 Firmware Version <= 5.0
   Mitel6873 Version-
Mitel6873 Firmware Version5.1 Update-
   Mitel6873 Version-
Mitel6873 Firmware Version5.1 Updatesp1
   Mitel6873 Version-
Mitel6873 Firmware Version5.1 Updatesp2
   Mitel6873 Version-
Mitel6873 Firmware Version5.1 Updatesp3
   Mitel6873 Version-
Mitel6873 Firmware Version5.1 Updatesp4
   Mitel6873 Version-
Mitel6940 Firmware Version <= 5.0
   Mitel6940 Version-
Mitel6940 Firmware Version5.1 Update-
   Mitel6940 Version-
Mitel6940 Firmware Version5.1 Updatesp1
   Mitel6940 Version-
Mitel6940 Firmware Version5.1 Updatesp2
   Mitel6940 Version-
Mitel6940 Firmware Version5.1 Updatesp3
   Mitel6940 Version-
Mitel6940 Firmware Version5.1 Updatesp4
   Mitel6940 Version-
Mitel6970 Firmware Version <= 5.0
   Mitel6970 Version-
Mitel6970 Firmware Version5.1 Update-
   Mitel6970 Version-
Mitel6970 Firmware Version5.1 Updatesp1
   Mitel6970 Version-
Mitel6970 Firmware Version5.1 Updatesp2
   Mitel6970 Version-
Mitel6970 Firmware Version5.1 Updatesp3
   Mitel6970 Version-
Mitel6970 Firmware Version5.1 Updatesp4
   Mitel6970 Version-
Mitel6930 Firmware Version <= 5.0
   Mitel6930 Version-
Mitel6930 Firmware Version5.1 Update-
   Mitel6930 Version-
Mitel6930 Firmware Version5.1 Updatesp1
   Mitel6930 Version-
Mitel6930 Firmware Version5.1 Updatesp2
   Mitel6930 Version-
Mitel6930 Firmware Version5.1 Updatesp3
   Mitel6930 Version-
Mitel6930 Firmware Version5.1 Updatesp4
   Mitel6930 Version-
Mitel6920 Firmware Version <= 5.0
   Mitel6920 Version-
Mitel6920 Firmware Version5.1 Update-
   Mitel6920 Version-
Mitel6920 Firmware Version5.1 Updatesp1
   Mitel6920 Version-
Mitel6920 Firmware Version5.1 Updatesp2
   Mitel6920 Version-
Mitel6920 Firmware Version5.1 Updatesp3
   Mitel6920 Version-
Mitel6920 Firmware Version5.1 Updatesp4
   Mitel6920 Version-
Mitel6905 Firmware Version <= 5.0
   Mitel6905 Version-
Mitel6905 Firmware Version5.1 Update-
   Mitel6905 Version-
Mitel6905 Firmware Version5.1 Updatesp1
   Mitel6905 Version-
Mitel6905 Firmware Version5.1 Updatesp2
   Mitel6905 Version-
Mitel6905 Firmware Version5.1 Updatesp3
   Mitel6905 Version-
Mitel6905 Firmware Version5.1 Updatesp4
   Mitel6905 Version-
Mitel6910 Firmware Version <= 5.0
   Mitel6910 Version-
Mitel6910 Firmware Version5.1 Update-
   Mitel6910 Version-
Mitel6910 Firmware Version5.1 Updatesp1
   Mitel6910 Version-
Mitel6910 Firmware Version5.1 Updatesp2
   Mitel6910 Version-
Mitel6910 Firmware Version5.1 Updatesp3
   Mitel6910 Version-
Mitel6910 Firmware Version5.1 Updatesp4
   Mitel6910 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.39% 0.568
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-307 Improper Restriction of Excessive Authentication Attempts

The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame.