Output Sanitization Flaw in Mitel MiCollab Product
CVE-2021-32067

6.5MEDIUM

Key Information:

Vendor
Mitel
Status
Vendor
CVE Published:
13 August 2021

Summary

The MiCollab Client Service component in Mitel MiCollab prior to version 9.3 is vulnerable to a flaw that allows attackers to access sensitive system information. This issue arises from a lack of proper output sanitization, leading to potential data leakage through HTTP responses. Organizations using affected versions are advised to update to mitigate these risks and enhance their security posture.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.