Home

Description

A vulnerability in the web conferencing component of Mitel MiCollab through 9.7.1.110 could allow an authenticated attacker with administrative privileges to conduct a Stored Cross-Site Scripting (XSS) attack due to insufficient validation of user input. A successful exploit could allow an attacker to execute arbitrary scripts.

PUBLISHED Reserved 2024-03-24 | Published 2024-10-21 | Updated 2025-03-22 | Assigner mitre

References

www.mitel.com/...ies/mitel-product-security-advisory-24-0005

cve.org (CVE-2024-30159)

nvd.nist.gov (CVE-2024-30159)

Download JSON