CVE-2025-23092: Path Traversal
Mitel OpenScape Accounting Management through V5 R1.1.0 could allow an authenticated attacker with administrative privileges to conduct a path traversal attack due to insufficient sanitization of user input. A successful exploit could allow an attacker to upload arbitrary files and execute unauthorized commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23092?
CVE-2025-23092 is classified as a high severity vulnerability due to its potential to allow an authenticated attacker to perform a path traversal attack.
How do I fix CVE-2025-23092?
To fix CVE-2025-23092, ensure that you update Mitel OpenScape Accounting Management to a version beyond V5 R1.1.0 that addresses this vulnerability.
What type of attack does CVE-2025-23092 facilitate?
CVE-2025-23092 enables a path traversal attack, allowing attackers to access files outside of the intended directory.
Who is affected by CVE-2025-23092?
CVE-2025-23092 affects users of Mitel OpenScape Accounting Management versions up to and including V5 R1.1.0.
What are the consequences of exploiting CVE-2025-23092?
Exploiting CVE-2025-23092 could allow an attacker to upload arbitrary files and execute unauthorized commands on the affected system.