PT-2025-30691 · Mitel · Mitel Micollab

Jasper Korten

·

Published

2025-07-23

·

Updated

2025-08-08

·

CVE-2025-52914

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mitel MiCollab (affected versions not specified)
Description A high-severity SQL injection flaw exists in Mitel MiCollab. This flaw allows authenticated attackers to access user provisioning data and execute arbitrary database commands. Approximately 11,000 potentially affected devices have been identified worldwide.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

BDU:2025-13110
CVE-2025-52914

Affected Products

Mitel Micollab