CVE-2021-32067: Medium severity mitel micollab, mivoice business express vulnerability
Published Aug 13, 2021
·Updated
The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to view sensitive system information through an HTTP response due to insufficient output sanitization.
Affected Software
1 affected component
Mitel MiCollab<9.3
Event History
Aug 13, 2021
CVE Published
via MITRE·03:27 PM
Data Sourced
via MITRE·03:27 PM
Description
Frequently Asked Questions
1
What is CVE-2021-32067?
CVE-2021-32067 is a vulnerability in the MiCollab Client Service component in Mitel MiCollab.
2
How can an attacker exploit CVE-2021-32067?
An attacker can exploit CVE-2021-32067 by viewing sensitive system information through an HTTP response.
3
What is the severity of CVE-2021-32067?
The severity of CVE-2021-32067 is medium with a CVSS score of 6.5.
4
Which version of Mitel MiCollab is affected by CVE-2021-32067?
Mitel MiCollab version up to and exclusive of 9.3 is affected by CVE-2021-32067.
5
How can I fix CVE-2021-32067?
To fix CVE-2021-32067, update your Mitel MiCollab software to version 9.3 or higher.