Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-31460

Опубликовано: 24 мая 2023
Источник: nvd
CVSS3: 7.2
EPSS Низкий

Описание

A vulnerability in the Connect Mobility Router component of MiVoice Connect versions 9.6.2208.101 and earlier could allow an authenticated attacker with internal network access to conduct a command injection attack due to insufficient restriction on URL parameters.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mitel:mivoice_connect:*:*:*:*:*:*:*:*
Версия до 9.6.2208.101 (включая)

EPSS

Процентиль: 85%
0.0255
Низкий

7.2 High

CVSS3

Дефекты

CWE-77
CWE-77

Связанные уязвимости

CVSS3: 7.2
github
больше 2 лет назад

A vulnerability in the Connect Mobility Router component of MiVoice Connect versions 9.6.2208.101 and earlier could allow an authenticated attacker with internal network access to conduct a command injection attack due to insufficient restriction on URL parameters.

EPSS

Процентиль: 85%
0.0255
Низкий

7.2 High

CVSS3

Дефекты

CWE-77
CWE-77