Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-43jv-mfhv-x3hx

Опубликовано: 22 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary scripts due to improper authorization controls. A successful exploit could allow remote code execution within the context of the application.

The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary scripts due to improper authorization controls. A successful exploit could allow remote code execution within the context of the application.

EPSS

Процентиль: 86%
0.02697
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-862
CWE-863

Связанные уязвимости

CVSS3: 9.8
nvd
около 3 лет назад

The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary scripts due to improper authorization controls. A successful exploit could allow remote code execution within the context of the application.

EPSS

Процентиль: 86%
0.02697
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-862
CWE-863