A vulnerability in the web conferencing component of Mitel MiCollab through 9.7.1.110 could allow an authenticated attacker with administrative privileges to conduct a SQL Injection attack due to insufficient validation of user input. A successful exploit could allow an attacker to execute arbitrary database and management operations.
2024-10-21T21:15:04.860
2024-10-25T16:30:09.927
Analyzed
CVSSv3.1: 7.2 (HIGH)