First published: Mon Oct 21 2024(Updated: )
A vulnerability in the Suite Applications Services component of Mitel MiCollab through 9.7.1.110 could allow an authenticated attacker with administrative privileges to conduct a Stored Cross-Site Scripting (XSS) attack due to insufficient validation of user input. A successful exploit could allow an attacker to execute arbitrary scripts.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mitel MiCollab | <=9.7.1.110 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30160 is considered a high severity vulnerability due to the potential for Stored Cross-Site Scripting (XSS) attacks.
To mitigate CVE-2024-30160, update Mitel MiCollab to a version beyond 9.7.1.110 which contains security fixes.
All versions of Mitel MiCollab up to and including 9.7.1.110 are affected by CVE-2024-30160.
CVE-2024-30160 can enable an authenticated attacker to perform a Stored Cross-Site Scripting (XSS) attack.
The vulnerability affects the Suite Applications Services component of Mitel MiCollab.