Security Advisory

CVE-2023-22854

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-13 00:00:00
Last updated 2025-03-21 18:32:34
Assigner mitre
State PUBLISHED

Description

The ccmweb component of Mitel MiContact Center Business server 9.2.2.0 through 9.4.1.0 could allow an unauthenticated attacker to download arbitrary files, due to insufficient restriction of URL parameters. A successful exploit could allow access to sensitive information.