Information Disclosure in Mitel ICP VoIP 3100 Devices
CVE-2003-20001
5.6MEDIUM
What is CVE-2003-20001?
On Mitel ICP VoIP 3100 devices, a security issue occurs when a remote user logs in via TELNET during the login wait time, and an incoming external call arrives. In this scenario, the system inadvertently reveals sensitive information regarding the call, including service type, extension number, and additional parameters related to call activity. This vulnerability may allow unauthorized individuals to access confidential call data, posing a security risk to the users of the affected devices.