First published: Mon Aug 14 2023(Updated: )
A Command Injection vulnerability has been identified in the MiVoice Office 400 SMB Controller through 1.2.5.23 which could allow a malicious actor to execute arbitrary commands within the context of the system.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mitel MiVoice Office 400 SMB Controller Firmware | <=7.0.9281 | |
Mitel MiVoice Office 400 SMB Controller Firmware | <=1.2.5.23 | |
Mitel MiVoice Office 400 SMB Controller Firmware | ||
All of | ||
Any of | ||
Mitel MiVoice Office 400 SMB Controller Firmware | <=7.0.9281 | |
Mitel MiVoice Office 400 SMB Controller Firmware | <=1.2.5.23 | |
Mitel MiVoice Office 400 SMB Controller Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39293 is a Command Injection vulnerability found in the MiVoice Office 400 SMB Controller firmware.
CVE-2023-39293 has a severity score of 9.8 (critical).
CVE-2023-39293 affects Mitel MiVoice Office 400 versions up to 7.0.9281.
CVE-2023-39293 affects Mitel MiVoice Office 400 SMB Controller firmware up to 1.2.5.23.
Mitel MiVoice Office 400 SMB Controller is not vulnerable to CVE-2023-39293.