Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-41326


The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary scripts due to improper authorization controls. A successful exploit could allow remote code execution within the context of the application.


Published

2022-11-22T01:15:33.647

Last Modified

2025-04-29T16:15:25.330

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    NVD-CWE-Other
  • Type: Secondary
    CWE-862

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application mitel micollab ≤ 9.6.0.105 Yes

References