CVE-2020-25608: Input Validation
Published Dec 18, 2020
·Updated
The SAS portal of Mitel MiCollab before 9.2 could allow an attacker to access user credentials due to improper input validation, aka SQL Injection.
Affected Software
1 affected component
Mitel MiCollab<9.2
Event History
Dec 18, 2020
CVE Published
via MITRE·07:15 AM
Data Sourced
via MITRE·07:15 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for the Mitel MiCollab vulnerability?
The vulnerability ID for the Mitel MiCollab vulnerability is CVE-2020-25608.
2
What is the severity level of CVE-2020-25608?
The severity level of CVE-2020-25608 is high with a score of 7.2.
3
How does CVE-2020-25608 impact Mitel MiCollab?
CVE-2020-25608 impacts Mitel MiCollab by allowing an attacker to access user credentials through SQL injection due to improper input validation.
4
Which versions of Mitel MiCollab are affected by CVE-2020-25608?
Mitel MiCollab versions up to and excluding 9.2 are affected by CVE-2020-25608.
5
How can I fix CVE-2020-25608 for Mitel MiCollab?
To fix CVE-2020-25608 for Mitel MiCollab, it is recommended to upgrade to version 9.2 or higher.