CVE-2023-39290

medium

Description

A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through R19.3 SP3 (22.24.5800.0) could allow an authenticated attacker with elevated privileges to conduct an information disclosure attack due to improper configuration. A successful exploit could allow an attacker to view system information.

References

https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-23-0012

https://www.mitel.com/support/security-advisories

Details

Source: Mitre, NVD

Published: 2023-08-25

Updated: 2023-08-31

Risk Information

CVSS v2

Base Score: 6.1

Vector: CVSS2#AV:N/AC:L/Au:M/C:C/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 4.9

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Severity: Medium