Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 24 Jun 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mitel
Mitel micollab |
|
| CPEs | cpe:2.3:a:mitel:micollab:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Mitel
Mitel micollab |
Tue, 05 Nov 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-116 | |
| Metrics |
cvssV3_1
|
Tue, 22 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 21 Oct 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct a CRLF injection attack due to inadequate encoding of user input in URLs. A successful exploit could allow an attacker to perform a phishing attack. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-05T21:05:47.109Z
Reserved: 2024-09-22T00:00:00.000Z
Link: CVE-2024-47224
Updated: 2024-10-22T17:12:07.456Z
Status : Analyzed
Published: 2024-10-21T21:15:06.650
Modified: 2025-06-24T01:21:34.700
Link: CVE-2024-47224
No data.
OpenCVE Enrichment
No data.