First published: Fri Sep 25 2020(Updated: )
Mitel MiCloud Management Portal before 6.1 SP5 could allow a remote attacker to conduct a SQL Injection attack and access user credentials due to improper input validation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mitel MiCloud Management Portal | <=6.0 | |
Mitel MiCloud Management Portal | =6.1 | |
Mitel MiCloud Management Portal | =6.1-sp4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-24593 is high with a severity value of 7.2.
CVE-2020-24593 affects Mitel MiCloud Management Portal versions 6.0, 6.1, and 6.1 SP4.
The vulnerability type of CVE-2020-24593 is SQL Injection.
A remote attacker can exploit CVE-2020-24593 by conducting a SQL Injection attack.
It is recommended to update to Mitel MiCloud Management Portal version 6.1 SP5.