目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2024-31966— Mitel 6800 SIP 和 6900 SIP 安全漏洞

AI 预测 8.1 利用难度: 中等 EPSS 0.44% · P36
获取后续新漏洞提醒登录后订阅

一、 漏洞 CVE-2024-31966 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
N/A
来源: 美国国家漏洞数据库 NVD
Vulnerability Description
A vulnerability on Mitel 6800 Series and 6900 Series SIP Phones through 6.3 SP3 HF4, 6900w Series SIP Phone through 6.3.3, and 6970 Conference Unit through 5.1.1 SP8 allows an authenticated attacker with administrative privilege to conduct an argument injection attack due to insufficient parameter sanitization. A successful exploit could allow an attacker to access sensitive information, modify system configuration or execute arbitrary commands.
来源: 美国国家漏洞数据库 NVD
CVSS Information
N/A
来源: 美国国家漏洞数据库 NVD
Vulnerability Type
N/A
来源: 美国国家漏洞数据库 NVD
Vulnerability Title
Mitel 6800 SIP 和 6900 SIP 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Mitel 6800 SIP和Mitel 6900 SIP都是加拿大敏迪(Mitel)公司的产品。Mitel 6800 SIP是一款6800 SIP系列IP电话。Mitel 6900 SIP是一款6900 SIP系列IP电话。 Mitel 6800 SIP 和 6900 SIP 存在安全漏洞,该漏洞源于参数清理不足,允许具有管理权限的经过身份验证的攻击者进行参数注入攻击。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商产品影响版本CPE订阅
-n/a n/a -

二、漏洞 CVE-2024-31966 的公开POC

#POC 描述源链接神龙链接
AI 生成 POC高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2024-31966 的情报信息

登录查看更多情报信息。

CVE-2024-31966 厂商安全公告 (1)

同批安全公告 · n/a · 2024-05-02 · 共 15 条

CVE-2024-31965Mitel 6800 SIP 和 6900 SIP 安全漏洞
CVE-2024-31963Mitel 6800 SIP 和 6900 SIP 安全漏洞
CVE-2024-31967Mitel 6800 SIP 和 6900 SIP 安全漏洞
CVE-2024-31964Mitel 6800 SIP 和 6900 SIP 安全漏洞
CVE-2024-29309Alfresco 安全漏洞
CVE-2024-33302Product Show Room 跨站脚本漏洞
CVE-2024-33305Laboratory Management System 跨站脚本漏洞
CVE-2024-33530Jitsi Meet 安全漏洞
CVE-2024-33303Product Show Room 跨站脚本漏洞
CVE-2023-50685Hipcam RealServer 安全漏洞
CVE-2024-32359Carina 安全漏洞
CVE-2024-25290Casa Systems NL1901ACV 安全漏洞
CVE-2024-33394Kubevirt 安全漏洞
CVE-2024-33396karmada-io karmada 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2024-31966

暂无评论


发表评论