Vulnerabilities > Mitel > Mivoice Connect > 22.24.6900.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-09-14 | CVE-2023-39285 | Cross-Site Request Forgery (CSRF) vulnerability in Mitel Mivoice Connect A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an unauthenticated attacker to perform a Cross Site Request Forgery (CSRF) attack due to insufficient request validation. | 4.3 |
2020-08-26 | CVE-2020-12456 | Path Traversal vulnerability in Mitel Mivoice Connect A remote code execution vulnerability in Mitel MiVoice Connect Client before 214.100.1223.0 could allow an attacker to execute arbitrary code in the chat notification window, due to improper rendering of chat messages. | 8.8 |