Known Vulnerabilities for products from Mitel

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Mitel".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Mitel can be found at device.report : Mitel

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-39293 json A Command Injection vulnerability has been identified in the MiVoice Office 400 SMB Controller through 1.2.5.23 which could a... 9.8 - CRITICAL 2023-08-14 2023-08-21
CVE-2023-39292 json A SQL Injection vulnerability has been identified in the MiVoice Office 400 SMB Controller through 1.2.5.23 which could allow... 9.8 - CRITICAL 2023-08-14 2023-08-21
CVE-2023-39291 json A vulnerability in the Connect Mobility Router component of MiVoice Connect through 9.6.2304.102 could allow an authenticated... 4.9 - MEDIUM 2023-08-25 2023-08-29
CVE-2023-39290 json A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through R19.3 SP3 (22.24.5800.0) could allow an authen... 4.9 - MEDIUM 2023-08-25 2023-08-31
CVE-2023-39289 json A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2208.101 could allow an unauthe... 7.5 - HIGH 2023-08-25 2023-08-31
CVE-2023-39288 json A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2304.102 could allow an authent... 5.5 - MEDIUM 2023-08-25 2023-08-31
CVE-2023-39287 json A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an authent... 5.5 - MEDIUM 2023-08-25 2023-08-31
CVE-2023-39286 json A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2304.102 could allow an unauthe... 4.3 - MEDIUM 2023-09-14 2023-09-19
CVE-2023-39285 json A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an unauthe... 4.3 - MEDIUM 2023-09-14 2023-09-19
CVE-2023-32748 json The Linux DVS server component of Mitel MiVoice Connect through 19.3 SP2 (22.24.1500.0) could allow an unauthenticated attack... 9.8 - CRITICAL 2023-08-14 2023-08-22
CVE-2023-31460 json A vulnerability in the Connect Mobility Router component of MiVoice Connect versions 9.6.2208.101 and earlier could allow an ... 7.2 - HIGH 2023-05-24 2023-06-01
CVE-2023-31459 json A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect versions 9.6.2208.101 and earlier could all... 8.8 - HIGH 2023-05-24 2023-06-01
CVE-2023-31458 json A vulnerability in the Edge Gateway component of Mitel MiVoice Connect versions 19.3 SP2 (22.24.1500.0) and earlier could all... 9.8 - CRITICAL 2023-05-24 2023-06-01
CVE-2023-31457 json A vulnerability in the Headquarters server component of Mitel MiVoice Connect versions 19.3 SP2 (22.24.1500.0) and earlier co... 9.8 - CRITICAL 2023-05-24 2023-06-01
CVE-2023-25599 json A vulnerability in the conferencing component of Mitel MiVoice Connect through 19.3 SP2, 22.24.1500.0 could allow an unauthen... 7.4 - HIGH 2023-05-24 2023-08-17
CVE-2023-25598 json A vulnerability in the conferencing component of Mitel MiVoice Connect through 19.3 SP2 and 20.x, 21.x, and 22.x through 22.2... 6.1 - MEDIUM 2023-05-24 2023-06-01
CVE-2023-25597 json A vulnerability in the web conferencing component of Mitel MiCollab through 9.6.2.9 could allow an unauthenticated attacker t... 5.9 - MEDIUM 2023-04-14 2023-04-24
CVE-2023-22854 json The ccmweb component of Mitel MiContact Center Business server 9.2.2.0 through 9.4.1.0 could allow an unauthenticated attacke... 7.5 - HIGH 2023-02-13 2023-02-23
CVE-2022-41326 json The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary... 9.8 - CRITICAL 2022-11-22 2023-08-08
CVE-2022-41223 json The Director database component of MiVoice Connect through 19.3 (22.22.6100.0) could allow an authenticated attacker to condu... 6.8 - MEDIUM 2022-11-22 2022-11-26

Known software with vulnerabilities from Mitel

Type Vendor Product Version
HardwareMitel6863i-
Operating
System
Mitel6863i Firmware5.1.0.2051
HardwareMitel6865i-
Operating
System
Mitel6865i Firmware5.1.0.2051
HardwareMitel6867i-
Operating
System
Mitel6867i Firmware5.1.0.2051
HardwareMitel6869i-
Operating
System
Mitel6869i Firmware5.1.0.2051
HardwareMitel6873i-
Operating
System
Mitel6873i Firmware5.1.0.2051
HardwareMitel6920-
Operating
System
Mitel6920 Firmware5.1.0.2051
HardwareMitel6930-
Operating
System
Mitel6930 Firmware5.1.0.2051
HardwareMitel6940-
Operating
System
Mitel6940 Firmware5.1.0.2051
ApplicationMitelBusinesscti Enterprise-
ApplicationMitelCmg Suite8.4
ApplicationMitelConnect Onsite-
ApplicationMitelMicloud Management Portal5.3