A vulnerability in the MiCollab Client API of Mitel...
High severity
Unreviewed
Published
Oct 25, 2022
to the GitHub Advisory Database
•
Updated May 7, 2025
Description
Published by the National Vulnerability Database
Oct 25, 2022
Published to the GitHub Advisory Database
Oct 25, 2022
Last updated
May 7, 2025
A vulnerability in the MiCollab Client API of Mitel MiCollab 9.1.3 through 9.5.0.101 could allow an authenticated attacker to modify their profile parameters due to improper authorization controls. A successful exploit could allow the authenticated attacker to control another extension number.
References