The Service Appliance component in Mitel MiVoice Connect through 19.2 SP3 allows remote code execution because of incorrect data validation. The Service Appliances are SA 100, SA 400, and Virtual SA.
References
Link | Resource |
---|---|
https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-22-0002 | Vendor Advisory |
Configurations
Information
Published : 2022-04-25 19:15
Updated : 2022-05-05 11:25
NVD link : CVE-2022-29499
Mitre link : CVE-2022-29499
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
mitel
- mivoice_connect