5
CVSSv2

CVE-2020-11798

Published: 10/06/2020 Updated: 06/04/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

A Directory Traversal vulnerability in the web conference component of Mitel MiCollab AWV prior to 8.1.2.4 and 9.x prior to 9.1.3 could allow an malicious user to access arbitrary files from restricted directories of the server via a crafted URL, due to insufficient access validation. A successful exploit could allow an malicious user to access sensitive information from the restricted directories.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mitel micollab audio\\, web \\& video conferencing

Exploits

Mitel MiCollab AWV versions 8124 and 913 suffers from a directory traversal and local file inclusion vulnerabilities ...