CVE-2020-13617: High severity mitel 6863i sip firmware vulnerability
The Web UI component of Mitel MiVoice 6800 and 6900 series SIP Phones with firmware before 5.1.0.SP5 could allow an unauthenticated attacker to expose sensitive information due to improper memory handling during failed login attempts.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-13617?
CVE-2020-13617 has a severity rating that indicates a risk of exposing sensitive information through improper memory handling.
How do I fix CVE-2020-13617?
To fix CVE-2020-13617, you should update the affected Mitel MiVoice 6800 and 6900 series SIP Phones to firmware version 5.1.0.SP5 or later.
Which devices are impacted by CVE-2020-13617?
CVE-2020-13617 affects Mitel MiVoice 6800 and 6900 series SIP Phones with firmware versions prior to 5.1.0.SP5.
Can CVE-2020-13617 be exploited remotely?
Yes, CVE-2020-13617 can potentially be exploited by unauthenticated attackers remotely to expose sensitive information.
What should I do if I cannot update for CVE-2020-13617?
If unable to update for CVE-2020-13617, it is recommended to limit network access to the affected devices as a temporary mitigation.