NA

CVE-2023-25599

Published: 24/05/2023 Updated: 17/08/2023
CVSS v3 Base Score: 7.4 | Impact Score: 4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A vulnerability in the conferencing component of Mitel MiVoice Connect up to and including 19.3 SP2, 22.24.1500.0 could allow an unauthenticated malicious user to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the test_presenter.php page. A successful exploit could allow an malicious user to execute arbitrary scripts.

Vulnerable Product Search on Vulmon Subscribe to Product

mitel mivoice connect

mitel mivoice connect 19.3