The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending arbitrary code due to improper input validation, aka XSS. Successful exploitation could allow an attacker to view user conference information.
References
Link | Resource |
---|---|
https://www.mitel.com/support/security-advisories | Vendor Advisory |
Configurations
Information
Published : 2020-12-18 00:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-25611
Mitre link : CVE-2020-25611
JSON object : View
CWE
Products Affected
mitel
- micollab