Vulnerability Details CVE-2023-39293
A Command Injection vulnerability has been identified in the MiVoice Office 400 SMB Controller through 1.2.5.23 which could allow a malicious actor to execute arbitrary commands within the context of the system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.7%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-39293
-
cpe:2.3:a:mitel:mivoice_office_400:-
-
cpe:2.3:a:mitel:mivoice_office_400:5.0
-
cpe:2.3:a:mitel:mivoice_office_400:7.0.9281
-
cpe:2.3:h:mitel:mivoice_office_400_smb_controller:-
-
cpe:2.3:o:mitel:mivoice_office_400_smb_controller_firmware:-
-
cpe:2.3:o:mitel:mivoice_office_400_smb_controller_firmware:1.2.5.23