CVE-2024-30160: XSS
A vulnerability in the Suite Applications Services component of Mitel MiCollab through 9.7.1.110 could allow an authenticated attacker with administrative privileges to conduct a Stored Cross-Site Scripting (XSS) attack due to insufficient validation of user input. A successful exploit could allow an attacker to execute arbitrary scripts.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30160?
CVE-2024-30160 is considered a high severity vulnerability due to the potential for Stored Cross-Site Scripting (XSS) attacks.
How do I fix CVE-2024-30160?
To mitigate CVE-2024-30160, update Mitel MiCollab to a version beyond 9.7.1.110 which contains security fixes.
Who is affected by CVE-2024-30160?
All versions of Mitel MiCollab up to and including 9.7.1.110 are affected by CVE-2024-30160.
What kind of attack can be executed using CVE-2024-30160?
CVE-2024-30160 can enable an authenticated attacker to perform a Stored Cross-Site Scripting (XSS) attack.
What components are impacted by CVE-2024-30160?
The vulnerability affects the Suite Applications Services component of Mitel MiCollab.