The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending arbitrary code due to improper input validation, aka XSS. Successful exploitation could allow an attacker to view user conference information.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-12-18T07:11:58

Updated: 2020-12-18T07:11:58

Reserved: 2020-09-16T00:00:00


Link: CVE-2020-25611

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-12-18T08:15:14.717

Modified: 2021-07-21T11:39:23.747


Link: CVE-2020-25611

JSON object: View

cve-icon Redhat Information

No data.