Improper Input Validation Vulnerability in Mitel BusinessCTI Enterprise Client for Windows
CVE-2021-3176
8HIGH
What is CVE-2021-3176?
The Mitel BusinessCTI Enterprise (MBC-E) Client for Windows is affected by a vulnerability that allows an attacker to exploit improper input validation in the chat window. By sending specifically crafted HTTP links, an attacker could potentially gain unauthorized access to sensitive user information and application data. Affected versions include those prior to 6.4.15 and 7.x prior to 7.1.2. It is crucial to address this vulnerability to protect user privacy and integrity.