Mitel

Micollab

49 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3%
  • Veröffentlicht 22.11.2022 01:15:33
  • Zuletzt bearbeitet 29.04.2025 16:15:25

The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary scripts due to improper authorization controls. A successful exploit could allow remote code execution within the context of...

  • EPSS 2.46%
  • Veröffentlicht 25.10.2022 19:15:10
  • Zuletzt bearbeitet 07.05.2025 21:15:54

A vulnerability in the web conferencing component of Mitel MiCollab through 9.5.0.101 could allow an unauthenticated attacker to upload malicious files. A successful exploit could allow an attacker to execute arbitrary code within the context of the ...

  • EPSS 0.18%
  • Veröffentlicht 25.10.2022 18:15:09
  • Zuletzt bearbeitet 07.05.2025 21:15:54

A vulnerability in the MiCollab Client server component of Mitel MiCollab through 9.5.0.101 could allow an authenticated attacker to conduct a Server-Side Request Forgery (SSRF) attack due to insufficient restriction of URL parameters. A successful e...

  • EPSS 0.18%
  • Veröffentlicht 25.10.2022 18:15:09
  • Zuletzt bearbeitet 07.05.2025 21:15:55

A vulnerability in the MiCollab Client API of Mitel MiCollab through 9.5.0.101 could allow an authenticated attacker to modify their profile parameters due to improper authorization controls. A successful exploit could allow the authenticated attacke...

  • EPSS 0.31%
  • Veröffentlicht 25.10.2022 18:15:09
  • Zuletzt bearbeitet 07.05.2025 21:15:55

A vulnerability in the MiCollab Client API of Mitel MiCollab 9.1.3 through 9.5.0.101 could allow an authenticated attacker to modify their profile parameters due to improper authorization controls. A successful exploit could allow the authenticated a...

Warnung Medienbericht Exploit
  • EPSS 64.87%
  • Veröffentlicht 10.03.2022 17:47:32
  • Zuletzt bearbeitet 14.03.2025 20:00:05

The TP-240 (aka tp240dvr) component in Mitel MiCollab before 9.4 SP1 FP1 and MiVoice Business Express through 8.1 allows remote attackers to obtain sensitive information and cause a denial of service (performance degradation and excessive outbound tr...

  • EPSS 0.26%
  • Veröffentlicht 13.08.2021 16:15:07
  • Zuletzt bearbeitet 21.11.2024 06:06:48

The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to get source code information (disclosing sensitive application data) due to insufficient output sanitization. A successful exploit could allow an attacker to...

  • EPSS 0.56%
  • Veröffentlicht 13.08.2021 16:15:07
  • Zuletzt bearbeitet 21.11.2024 06:06:47

The MiCollab Client service in Mitel MiCollab before 9.3 could allow an unauthenticated user to gain system access due to improper access control. A successful exploit could allow an attacker to view and modify application data, and cause a denial of...

  • EPSS 0.17%
  • Veröffentlicht 13.08.2021 16:15:07
  • Zuletzt bearbeitet 21.11.2024 06:06:47

The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to perform a clickjacking attack due to an insecure header response. A successful exploit could allow an attacker to modify the browser header and redirect use...

  • EPSS 0.16%
  • Veröffentlicht 13.08.2021 16:15:07
  • Zuletzt bearbeitet 21.11.2024 06:06:47

The AWV component of Mitel MiCollab before 9.3 could allow an attacker to perform a Man-In-the-Middle attack due to improper TLS negotiation. A successful exploit could allow an attacker to view and modify data.