A vulnerability in Mitel 6900 Series IP (MiNet) phones excluding 6970, versions 1.8 (1.8.0.12) and earlier, could allow a unauthenticated attacker with physical access to the phone to gain root access due to insufficient access control for test functionality during system startup. A successful exploit could allow access to sensitive information and code execution.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2022-05-13 07:15
Updated : 2022-06-20 12:15
NVD link : CVE-2022-29854
Mitre link : CVE-2022-29854
JSON object : View
CWE
CWE-863
Incorrect Authorization
Products Affected
mitel
- minet_firmware
- 6940
- 6905
- 6920
- 6930_sip
- 6940_sip
- 6930
- 6910