A vulnerability in Mitel ST 14.2, release GA28 and previous versions, could allow an malicious user to use the API function to enumerate through user-ids which could be used to identify valid user ids and associated user names.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mitel st14.2 |