CVE-2024-31967
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability on Mitel 6800 Series and 6900 Series SIP Phones through 6.3 SP3 HF4, 6900w Series SIP Phone through 6.3.3, and 6970 Conference Unit through 5.1.1 SP8 allows an unauthenticated attacker to conduct an unauthorized access attack due to improper access control. A successful exploit could allow an attacker to gain unauthorized access to user information or the system configuration.
Una vulnerabilidad en los teléfonos SIP Mitel de las series 6800 y 6900, incluida la unidad de conferencia 6970, hasta 6.3 SP3 HF4, permite que un atacante no autenticado lleve a cabo un ataque de acceso no autorizado debido a un control de acceso inadecuado. Un exploit exitoso podría permitir a un atacante obtener acceso no autorizado a la información del usuario o a la configuración del sistema.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2024-04-08 CVE Reserved
- 2024-05-02 CVE Published
- 2024-08-02 CVE Updated
- 2025-04-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-284: Improper Access Control
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-24-0010 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Mitel Search vendor "Mitel" | 6800 Series Sip Phones Search vendor "Mitel" for product "6800 Series Sip Phones" | * | - |
Affected
| ||||||
Mitel Search vendor "Mitel" | 6900 Series Sip Phones Search vendor "Mitel" for product "6900 Series Sip Phones" | * | - |
Affected
| ||||||
Mitel Search vendor "Mitel" | 6970 Conference Unit Search vendor "Mitel" for product "6970 Conference Unit" | * | - |
Affected
|