CVE-2020-24594
25.09.2020, 04:23
Mitel MiCloud Management Portal before 6.1 SP5 could allow an unauthenticated attacker to execute arbitrary scripts due to insufficient input validation, aka XSS. A successful exploit could allow an attacker to gain access to a user session.
Vendor | Product | Version |
---|---|---|
mitel | micloud_management_portal | 𝑥 ≤ 6.0 |
mitel | micloud_management_portal | 6.1 |
mitel | micloud_management_portal | 6.1:sp4 |
𝑥
= Vulnerable software versions