Output Sanitization Flaw in Mitel MiCloud Management Portal
CVE-2020-24592

5.3MEDIUM

Key Information:

Vendor

Mitel

Vendor
CVE Published:
25 September 2020

What is CVE-2020-24592?

The Mitel MiCloud Management Portal prior to version 6.1 SP5 suffers from an output sanitization vulnerability. An attacker could exploit this weakness by sending a specifically crafted request, potentially exposing sensitive system information that should not be accessible. This flaw emphasizes the need for robust sanitization measures in web applications to safeguard against unauthorized data exposure.

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.