Vulnerabilities (CVE)

Filtered by vendor Mitel Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-32068 1 Mitel 1 Micollab 2021-08-23 4.3 MEDIUM 3.7 LOW
The AWV and MiCollab Client Service components in Mitel MiCollab before 9.3 could allow an attacker to perform a Man-In-the-Middle attack by sending multiple session renegotiation requests, due to insufficient TLS session controls. A successful exploit could allow an attacker to modify application data and state.
CVE-2020-24693 1 Mitel 1 Micontact Center Business 2020-12-18 2.1 LOW 3.3 LOW
The Ignite portal in Mitel MiContact Center Business before 9.3.0.0 could allow a local attacker to view system information due to insufficient output sanitization.