CVE-2023-39289: Infoleak
A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2208.101 could allow an unauthenticated attacker to conduct an account enumeration attack due to improper configuration. A successful exploit could allow an attacker to access system information.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this Mitel MiVoice Connect vulnerability?
The vulnerability ID of this Mitel MiVoice Connect vulnerability is CVE-2023-39289.
What is the title of this vulnerability?
The title of this vulnerability is 'A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2208.1'.
What is the description of this vulnerability?
The description of this vulnerability is: A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2208.101 could allow an unauthenticated attacker to conduct an account enumeration attack due to improper configuration. A successful exploit could allow an attacker to access system information.
What is the severity of CVE-2023-39289?
The severity of CVE-2023-39289 is high with a CVSS score of 7.5.
How can I fix the Mitel MiVoice Connect vulnerability CVE-2023-39289?
To fix the Mitel MiVoice Connect vulnerability CVE-2023-39289, Mitel recommends upgrading to the latest version of MiVoice Connect.