A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.1.0.4 could allow an unauthenticated attacker to conduct an unauthorized access attack due to inadequate access control checks. A successful exploit requires user interaction and could allow an attacker to access sensitive information and send unauthorized messages during an active chat session.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:NMitel Micontact Center Business
APPMitel≤ 10.1.0.4
Related vulnerabilities
Auth Bypass w SDK Mitel MiContact Center Business — nieautoryzowany dostęp do danych
A vulnerability in the Multimedia Email component of Mitel MiContact Center Business through 10.2.0.10 and Mit...
A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow a...
The ccmweb component of Mitel MiContact Center Business server 9.2.2.0 through 9.4.1.0 could allow an unauthen...
The Ignite portal in Mitel MiContact Center Business before 9.3.0.0 could allow an attacker to execute arbitra...