Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Mitel Subscribe
Filtered by product Mivoice Office 400
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-16226 1 Mitel 1 Mivoice Office 400 2018-12-31 4.3 MEDIUM 6.1 MEDIUM
A vulnerability in the web admin component of Mitel MiVoice Office 400, versions R5.0 HF3 (v8839a1) and earlier, could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack, due to insufficient validation for the start.asp page. A successful exploit could allow the attacker to execute arbitrary scripts to access sensitive browser-based information.