Description

A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct a CRLF injection attack due to inadequate encoding of user input in URLs. A successful exploit could allow an attacker to perform a phishing attack.

INFO

Published Date :

2024-10-21T00:00:00.000Z

Last Modified :

2024-11-05T21:05:47.109Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-47224 vulnerability.

Vendors Products
Mitel
  • Micollab
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-47224.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact