PT-2021-19652 · Mitel · Mitel Micollab

Published

2021-08-13

·

Updated

2021-08-25

·

CVE-2021-32072

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Mitel MiCollab versions prior to 9.3
Description: The issue is related to insufficient output sanitization in the MiCollab Client Service component, which could allow an attacker to obtain source code information, disclosing sensitive application data. A successful exploit could enable an attacker to view source code methods.
Recommendations: For versions prior to 9.3, update to version 9.3 or later to resolve the issue.

Fix

Improper Encoding or Escaping of Output

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-32072

Affected Products

Mitel Micollab