Aller au contenu

Fiche vulnérabilité

CVE-2021-26714 : faille critique mitel micontact center enterprise (CVSS 9.8)

Description

The Enterprise License Manager portal in Mitel MiContact Center Enterprise before 9.4 could allow a user to access restricted files and folders due to insufficient access control. A successful exploit could allow an attacker to view and modify application data via Directory Traversal.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
29 mars 2021
Dernière mise à jour
17 juin 2026

Produits concernés

  • mitel micontact center enterprise

Références

Rechercher une autre vulnérabilité dans la base CVE