Vulnerabilities > Mitel > Businesscti Enterprise > High

DATE CVE VULNERABILITY TITLE RISK
2021-01-29 CVE-2021-3176 Improper Input Validation vulnerability in Mitel Businesscti Enterprise
The chat window of the Mitel BusinessCTI Enterprise (MBC-E) Client for Windows before 6.4.15 and 7.x before 7.1.2 could allow an attacker to gain access to user information by sending certain code, due to improper input validation of http links.
network
low complexity
mitel CWE-20
8.0
2020-12-18 CVE-2020-27154 Improper Input Validation vulnerability in Mitel Businesscti Enterprise 6.4.10/7.0.0/7.0.2
The chat window of Mitel BusinessCTI Enterprise (MBC-E) Client for Windows before 6.4.11 and 7.x before 7.0.3 could allow an attacker to gain access to user information by sending arbitrary code, due to improper input validation.
network
low complexity
mitel CWE-20
8.8