CVE-2020-25612: Medium severity mitel micollab, mivoice business express vulnerability
The NuPoint Messenger of Mitel MiCollab before 9.2 could allow an attacker with escalated privilege to access user files due to insufficient access control. Successful exploit could potentially allow an attacker to gain access to sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-25612?
CVE-2020-25612 is a vulnerability in the NuPoint Messenger of Mitel MiCollab before version 9.2 that could allow an attacker with escalated privilege to access user files due to insufficient access control.
What is the severity of CVE-2020-25612?
The severity of CVE-2020-25612 is medium, with a severity value of 4.9.
How does CVE-2020-25612 affect Mitel MiCollab?
CVE-2020-25612 affects Mitel MiCollab before version 9.2 by allowing an attacker with escalated privilege to access user files due to insufficient access control.
How can an attacker exploit CVE-2020-25612?
An attacker with escalated privilege can exploit CVE-2020-25612 by gaining access to user files through the NuPoint Messenger of Mitel MiCollab before version 9.2.
Is there a fix for CVE-2020-25612?
Yes, upgrading Mitel MiCollab to version 9.2 or later fixes the vulnerability CVE-2020-25612.