216.73.216.36

CVE-2024-41710

· Published 12/08/2024 19:15 · Modified 12/08/2024 19:15

Labels: CVE-2024-41710 2024-08-12CVE-2024-41710[email protected]

Essential information

Published
12/08/2024 19:15
Modified
12/08/2024 19:15
Author
Creator
CISA KEV
No
CWE

Description

A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (R6.4.0.136) could allow an authenticated attacker with administrative privilege to conduct an argument injection attack, due to insufficient parameter sanitization during the boot process. A successful exploit could allow an attacker to execute arbitrary commands within the context of the system.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References