Vulnerabilities
Vulnerable Software
Mitel:  >> Micollab  >> 9.8.0.33  Security Vulnerabilities
A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct a SQL injection attack due to insufficient sanitization of user input. A successful exploit could allow an attacker to access non-sensitive user provisioning information and execute arbitrary SQL database commands.
CVSS Score
9.4
EPSS Score
0.008
Published
2024-10-21
A vulnerability in the AWV (Audio, Web, and Video) Conferencing component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to perform unauthorized data-access attacks due to missing authentication mechanisms. A successful exploit could allow an attacker to access and delete sensitive information.
CVSS Score
8.2
EPSS Score
0.004
Published
2024-10-21


Contact Us

Shodan ® - All rights reserved