Vulnerabilities > Mitel > St14 2 > High

DATE CVE VULNERABILITY TITLE RISK
2018-03-13 CVE-2017-16251 Unrestricted Upload of File with Dangerous Type vulnerability in Mitel St14.2 Ga28
A vulnerability in the conferencing component of Mitel ST 14.2, release GA28 and earlier, could allow an authenticated user to upload a malicious script to the Personal Library by a crafted POST request.
network
low complexity
mitel CWE-434
8.8