CVE-2023-39292
14.08.2023, 19:15
A SQL Injection vulnerability has been identified in the MiVoice Office 400 SMB Controller through 1.2.5.23 which could allow a malicious actor to access sensitive information and execute arbitrary database and management operations.
Vendor | Product | Version |
---|---|---|
mitel | mivoice_office_400 | 𝑥 ≤ 7.0.9281 |
mitel | mivoice_office_400_smb_controller_firmware | 𝑥 ≤ 1.2.5.23 |
𝑥
= Vulnerable software versions