Insufficient Access Control in Mitel MiCollab Online Help Portal
CVE-2020-27340
6.1MEDIUM
Summary
The online help portal of Mitel MiCollab, prior to version 9.2, is susceptible to an attack that can redirect users to unauthorized websites. This occurs due to insufficient access control, allowing malicious scripts to execute and compromise user interactions. Users of older versions are recommended to upgrade to the latest version to mitigate this vulnerability and enhance security. For more information, refer to Mitel's security advisories.
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved