CNNVD-202508-725 Information

CNNVD ID

CNNVD-202508-725

CVE-2025-52914

  • CNNVD Published: 2025-08-08

Description (Chinese)

Mitel MiCollab是加拿大敏迪(Mitel)公司的一款为员工提供语音、视频、消息、音频会议和团队协作的移动应用程序。 Mitel MiCollab 10.0.1.101及之前版本存在SQL注入漏洞,该漏洞源于Suite Applications Services组件输入验证不足,可能导致SQL注入攻击。

Description (English)

Mitel MiCollab is a mobile application for staff with voice, video, news, audio, and team collaboration from the Canadian company Mitel. Mitel MiCollab 10.01.101 and earlier versions had an injection loophole in SQL, which stemmed from inadequate input validation of the Suite Applications Services component, which could lead to an SQL injection attack.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

敏迪

Published

2025-08-08

Last Modified

2026-02-24

References

https://www.mitel.com/support/security-advisories https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-misa-2025-0008 https://access.redhat.com/security/cve/cve-2025-52914

Patch

https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-misa-2025-0008

Share on: