A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 (22.22.6100.0) could allow an authenticated attacker with internal network access to conduct a command-injection attack, due to insufficient restriction of URL parameters.
2022-11-22T01:15:31.847
2025-02-04T14:52:50.557
Analyzed
CVSSv3.1: 6.8 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mitel | mivoice_connect | < 19.3 | Yes |
Application | mitel | mivoice_connect | 19.3 | Yes |