CVE-2020-25611

The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending arbitrary code due to improper input validation, aka XSS. Successful exploitation could allow an attacker to view user conference information.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:mitel:micollab:*:*:*:*:*:-:*:*

Information

Published : 2020-12-18 00:15

Updated : 2021-07-21 04:39


NVD link : CVE-2020-25611

Mitre link : CVE-2020-25611


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

mitel

  • micollab