First published: Fri Sep 25 2020(Updated: )
Mitel MiCloud Management Portal before 6.1 SP5 could allow an attacker, by sending a crafted request, to view system information due to insufficient output sanitization.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mitel MiCloud Management Portal | <=6.0 | |
Mitel MiCloud Management Portal | =6.1 | |
Mitel MiCloud Management Portal | =6.1-sp4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-24592 is a vulnerability in Mitel MiCloud Management Portal before version 6.1 SP5 that could allow an attacker to view system information.
The severity of CVE-2020-24592 is medium, with a CVSS score of 5.3.
An attacker can exploit CVE-2020-24592 by sending a crafted request to the Mitel MiCloud Management Portal.
Mitel MiCloud Management Portal versions 6.0, 6.1, and 6.1 SP4 are affected by CVE-2020-24592.
To fix CVE-2020-24592, it is recommended to update the Mitel MiCloud Management Portal to version 6.1 SP5.