Vulnerabilities > Mitel > Micontact Center Business > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-13 CVE-2021-3352 Unspecified vulnerability in Mitel Micontact Center Business
The Software Development Kit in Mitel MiContact Center Business from 8.0.0.0 through 8.1.4.1 and 9.0.0.0 through 9.3.1.0 could allow an unauthenticated attacker to access (view and modify) user data without authorization due to improper handling of tokens.
network
low complexity
mitel
6.4
2020-02-25 CVE-2020-9379 Incorrect Authorization vulnerability in Mitel Micontact Center Business 8.0/9.0.0.0/9.0.1.0
The Software Development Kit of the MiContact Center Business with Site Based Security 8.0 through 9.0.1.0 before KB496276 allows an authenticated user to access sensitive information.
network
low complexity
mitel CWE-863
4.0