Mitel 6800 and 6900 Series SIP phone devices through 2022-04-27 have "undocumented functionality." A vulnerability in Mitel 6800 Series and 6900 Series SIP phones excluding 6970, versions 5.1 SP8 (5.1.0.8016) and earlier, and 6.0 (6.0.0.368) through 6.1 HF4 (6.1.0.165), could allow a unauthenticated attacker with physical access to the phone to gain root access due to insufficient access control for test functionality during system startup. A successful exploit could allow access to sensitive information and code execution.
2022-05-11T20:15:08.787
2024-11-21T06:59:49.933
Modified
CVSSv3.1: 6.8 (MEDIUM)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | mitel | 6873i_sip_firmware | < 5.1.0.8017 | Yes |
Operating System | mitel | 6873i_sip_firmware | < 6.1.0.171 | Yes |
Hardware | mitel | 6873i_sip | - | No |
Operating System | mitel | 6930_sip_firmware | < 5.1.0.8017 | Yes |
Operating System | mitel | 6930_sip_firmware | < 6.1.0.171 | Yes |
Hardware | mitel | 6930_sip | - | No |
Operating System | mitel | 6940_sip_firmware | < 5.1.0.8017 | Yes |
Operating System | mitel | 6940_sip_firmware | < 6.1.0.171 | Yes |
Hardware | mitel | 6940_sip | - | No |
Operating System | mitel | 6865i_sip_firmware | < 5.1.0.8017 | Yes |
Operating System | mitel | 6865i_sip_firmware | < 6.1.0.171 | Yes |
Hardware | mitel | 6865i_sip | - | No |
Operating System | mitel | 6867i_sip_firmware | < 5.1.0.8017 | Yes |
Operating System | mitel | 6867i_sip_firmware | < 6.1.0.171 | Yes |
Hardware | mitel | 6867i_sip | - | No |
Operating System | mitel | 6869i_sip_firmware | < 5.1.0.8017 | Yes |
Operating System | mitel | 6869i_sip_firmware | < 6.1.0.171 | Yes |
Hardware | mitel | 6869i_sip | - | No |
Operating System | mitel | 6920_sip_firmware | ≤ 5.1.0.8016 | Yes |
Operating System | mitel | 6920_sip_firmware | ≤ 6.1.0.165 | Yes |
Hardware | mitel | 6920_sip | - | No |
Operating System | mitel | 6910_sip_firmware | ≤ 5.1.0.8016 | Yes |
Operating System | mitel | 6910_sip_firmware | ≤ 6.1.0.165 | Yes |
Hardware | mitel | 6910_sip | - | No |
Operating System | mitel | 6905_sip_firmware | ≤ 5.1.0.8016 | Yes |
Operating System | mitel | 6905_sip_firmware | ≤ 6.1.0.165 | Yes |
Hardware | mitel | 6905_sip | - | No |