PT-2026-3135 · Mitel · Mitel Mivoice Mx-One

Published

2026-01-15

·

Updated

2026-01-17

·

CVE-2025-67822

CVSS v3.1

9.4

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Name of the Vulnerable Software and Affected Versions Mitel MiVoice MX-ONE versions 7.3.0.0.50 through 7.8.1.0.14
Description A flaw exists in the Provisioning Manager component that allows an unauthenticated attacker to bypass authentication. A successful exploit could grant unauthorized access to user or admin accounts within the system.
Recommendations Update Mitel MiVoice MX-ONE to a version later than 7.8.1.0.14. Update Mitel MiVoice MX-ONE to a version later than 7.3.0.0.50.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2025-67822

Affected Products

Mitel Mivoice Mx-One