The provisioning manager component of Mitel MiVoice MX-ONE through 7.6 SP1 could allow an authenticated attacker to conduct an authentication bypass attack due to improper access control. A successful exploit could allow an attacker to bypass the authorization schema.
Metrics
Affected Vendors & Products
References
History
Thu, 12 Sep 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Mitel
Mitel mivoice Mx-one |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:mitel:mivoice_mx-one:*:*:*:*:*:*:*:* cpe:2.3:a:mitel:mivoice_mx-one:7.6:-:*:*:*:*:*:* cpe:2.3:a:mitel:mivoice_mx-one:7.6:sp1:*:*:*:*:*:* |
|
Vendors & Products |
Mitel
Mitel mivoice Mx-one |
|
Metrics |
cvssV3_1
|
Tue, 13 Aug 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 13 Aug 2024 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The provisioning manager component of Mitel MiVoice MX-ONE through 7.6 SP1 could allow an authenticated attacker to conduct an authentication bypass attack due to improper access control. A successful exploit could allow an attacker to bypass the authorization schema. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-08-13T00:00:00
Updated: 2024-08-13T18:32:09.965Z
Reserved: 2024-05-28T00:00:00
Link: CVE-2024-36446
Vulnrichment
Updated: 2024-08-13T18:32:06.055Z
NVD
Status : Analyzed
Published: 2024-08-13T17:15:23.403
Modified: 2024-09-12T20:47:17.520
Link: CVE-2024-36446
Redhat
No data.