CVE-2020-13617
The Web UI component of Mitel MiVoice 6800 and 6900 series SIP Phones with firmware before 5.1.0.SP5 could allow an unauthenticated attacker to expose sensitive information due to improper memory handling during failed login attempts.
Published:Aug 26, 2020
Last Modified:Nov 21, 2024
EPS:Aug 26, 2020
EPSS Score:0.00385
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Mitel
Product
6863
Mitel
6863
Vendor
Mitel
Product
6863 Firmware
Mitel
6863 Firmware
Vendor
Mitel
Product
6865
Mitel
6865
Vendor
Mitel
Product
6865 Firmware
Mitel
6865 Firmware
Vendor
Mitel
Product
6867
Mitel
6867
Vendor
Mitel
Product
6867 Firmware
Mitel
6867 Firmware
Vendor
Mitel
Product
6869
Mitel
6869
Vendor
Mitel
Product
6869 Firmware
Mitel
6869 Firmware
Vendor
Mitel
Product
6873
Mitel
6873
Vendor
Mitel
Product
6873 Firmware
Mitel
6873 Firmware
Vendor
Mitel
Product
6905
Mitel
6905
Vendor
Mitel
Product
6905 Firmware
Mitel
6905 Firmware
Vendor
Mitel
Product
6910
Mitel
6910
Vendor
Mitel
Product
6910 Firmware
Mitel
6910 Firmware
Vendor
Mitel
Product
6920
Mitel
6920
Vendor
Mitel
Product
6920 Firmware
Mitel
6920 Firmware
Vendor
Mitel
Product
6930
Mitel
6930
Vendor
Mitel
Product
6930 Firmware
Mitel
6930 Firmware
Vendor
Mitel
Product
6940
Mitel
6940
Vendor
Mitel
Product
6940 Firmware
Mitel
6940 Firmware
Vendor
Mitel
Product
6970
Mitel
6970
Vendor
Mitel
Product
6970 Firmware
Mitel
6970 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
