Vulnerability index

Browse CVEs

120 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Cx HIGH 8.2
CVE-2025-67823

A vulnerability in the Multimedia Email component of Mitel MiContact Center Business through 10.2.0.10 and Mitel CX through 1.1.0.1 could allow an un…

Fix: 2.0 / 10.2.0.11+
Fix from $1,950 2026-01-15
Mivoice Mx One CRITICAL 9.4
CVE-2025-67822

A vulnerability in the Provisioning Manager component of Mitel MiVoice MX-ONE 7.3 (7.3.0.0.50) through 7.8 SP1 (7.8.1.0.14) could allow an unauthenti…

Fix: 7.8+
Fix from $2,300 2026-01-15
Micollab HIGH 8.8
CVE-2025-52914

A vulnerability in the Suite Applications Services component of Mitel MiCollab 10.0 through SP1 FP1 (10.0.1.101) could allow an authenticated attacke…

Fix: 9.8.3.103 / 10.1.0.10+
Fix from $1,950 2025-08-08
Micollab CRITICAL 9.1
CVE-2024-41713 KEVEPSS 98%

A vulnerability in the NuPoint Unified Messaging (NPM) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated att…

Fix: after 9.8.1.201
Fix from $2,300 2024-10-21
Micollab HIGH 8.8
CVE-2024-41714

A vulnerability in the Web Interface component of Mitel MiCollab through 9.8 SP1 (9.8.1.5) and MiVoice Business Solution Virtual Instance (MiVB SVI) …

Fix: after 9.8.1.5
Fix from $1,950 2024-10-21
Micollab MEDIUM 6.6
CVE-2024-41712

A vulnerability in the Web Conferencing Component of Mitel MiCollab through 9.8.1.5 could allow an authenticated attacker to conduct a command inject…

Fix: after 9.8.1.5
Fix from $1,600 2024-10-21
Micollab MEDIUM 6.5
CVE-2024-47224

A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthentic…

Fix: after 9.8.1.201
Fix from $1,600 2024-10-21
Micollab CRITICAL 9.8
CVE-2024-35285

A vulnerability in NuPoint Messenger (NPM) of Mitel MiCollab through 9.8.0.33 allows an unauthenticated attacker to conduct a command injection attac…

Fix: after 9.8.0.33
Fix from $2,300 2024-10-21
Micollab CRITICAL 9.8
CVE-2024-35286EPSS 65%

A vulnerability in NuPoint Messenger (NPM) of Mitel MiCollab through 9.8.0.33 allows an unauthenticated attacker to conduct a SQL injection attack du…

Fix: after 9.8.0.33
Fix from $2,300 2024-10-21
Micollab CRITICAL 9.8
CVE-2024-35314

A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1.110, and MiVoice Business Solution Virtual Instance (MiVB SVI) 1.0.0.25, could …

Fix: after 9.7.1.110
Fix from $2,300 2024-10-21
Micollab MEDIUM 6.7
CVE-2024-35287

A vulnerability in the NuPoint Messenger (NPM) component of Mitel MiCollab through version 9.8 SP1 (9.8.1.5) could allow an authenticated attacker wi…

Fix: after 9.8.1.5
Fix from $1,600 2024-10-21
Micollab MEDIUM 5.6
CVE-2024-35315

A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1.110, and MiVoice Business Solution Virtual Instance (MiVB SVI) 1.0.0.25, could …

Fix: after 9.7.1.110
Fix from $1,600 2024-10-21
Micollab HIGH 7.2
CVE-2024-30157

A vulnerability in the Suite Applications Services component of Mitel MiCollab through 9.7.1.110 could allow an authenticated attacker with administr…

Fix: after 9.7.1.110
Fix from $1,950 2024-10-21
Micollab HIGH 7.2
CVE-2024-30158

A vulnerability in the web conferencing component of Mitel MiCollab through 9.7.1.110 could allow an authenticated attacker with administrative privi…

Fix: after 9.7.1.110
Fix from $1,950 2024-10-21
Micollab CRITICAL 9.4
CVE-2024-47223

A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthentic…

Fix: after 9.8.1.201
Fix from $2,300 2024-10-21
Micollab HIGH 8.2
CVE-2024-47912

A vulnerability in the AWV (Audio, Web, and Video) Conferencing component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenti…

Fix: after 9.8.1.201
Fix from $1,950 2024-10-21
Micollab HIGH 7.7
CVE-2024-47189

The API Interface of the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthent…

Fix: after 9.8.1.201
Fix from $1,950 2024-10-21
Micontact Center Business HIGH 8.1
CVE-2024-42514

A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.1.0.4 could allow an unauthenticated attacker to conduct a…

Fix: after 10.1.0.4
Fix from $1,950 2024-10-01
Mivoice Mx One HIGH 8.8
CVE-2024-36446

The provisioning manager component of Mitel MiVoice MX-ONE through 7.6 SP1 could allow an authenticated attacker to conduct an authentication bypass …

Fix: 7.6+
Fix from $1,950 2024-08-13
6970 Firmware HIGH 7.2
CVE-2024-41710 KEVEPSS 42%

A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (R6.4.0.13…

Fix: after 6.4.0.136
Fix from $1,950 2024-08-12
6869i Sip Firmware HIGH 8.8
CVE-2024-37569

An issue was discovered on Mitel 6869i through 4.5.0.41 and 5.x through 5.0.0.1018 devices. A command injection vulnerability exists in the hostname …

Fix: after 5.0.0.1018
Fix from $1,950 2024-06-09
6869i Sip Firmware HIGH 8.8
CVE-2024-37570

On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the username and path parameters (se…

No fix yet
Fix from $1,950 2024-06-09
Micontact Center Business MEDIUM 6.1
CVE-2024-35283

A vulnerability in the Ignite component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthenticated attacker to conduct a stor…

Fix: after 10.0.0.4
Fix from $1,600 2024-05-29
Micontact Center Business MEDIUM 5.4
CVE-2024-35284

A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthenticated attacker to conduct a…

Fix: after 10.0.0.4
Fix from $1,600 2024-05-29
6940w Firmware HIGH 8.8
CVE-2024-28066

In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password).

Fix: 1.11.3.0+
Fix from $1,950 2024-04-08
Micontact Center Business MEDIUM 6.8
CVE-2024-28070

A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthenticated attacker to conduct a…

Fix: after 10.0.0.4
Fix from $1,600 2024-03-16
Micontact Center Business HIGH 7.5
CVE-2024-28069

A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthenticated attacker to conduct a…

Fix: after 10.0.0.4
Fix from $1,950 2024-03-16
Unify Openscape Xpressions Webassistant CRITICAL 9.8
CVE-2023-40266

An issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows path traversal.

Fix: 7r1_fr5_hf42_p911+
Fix from $2,300 2024-02-08
Unify Openscape Xpressions Webassistant HIGH 8.8
CVE-2023-40265

An issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows authenticated remote code execution v…

Fix: 7r1_fr5_hf42_p911+
Fix from $1,950 2024-02-08
Mivoice Connect HIGH 7.5
CVE-2023-39289

A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2208.101 could allow an unauthenticated attacker to con…

Fix: after 9.6.2208.101
Fix from $1,950 2023-08-25