CVE-2023-31457
Mitel Mivoice Connect ≤ 22.24.1500.0
CVSS Score v3.1
9.8
Click a component to see what it means
Raw vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.0099
59th percentile
Summary
CVE-2023-31457 is a critical-severity an unspecified weakness vulnerability in Mitel Mivoice Connect. Its CVSS base score is 9.8 (Critical).
Operationally, ranked in the top 41% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2023-35763
Vulnerability Data
A vulnerability in the Headquarters server component of Mitel MiVoice Connect versions 19.3 SP2 (22.24.1500.0) and earlier could allow an unauthenticated attacker with internal network access to execute arbitrary scripts due to improper access control.
- CWE(s)
Related Threats
CVEs Like This One
CVE-2023-39285Same product: Mitel Mivoice Connect
CVE-2023-39288Same product: Mitel Mivoice Connect
CVE-2023-39289Same product: Mitel Mivoice Connect
CVE-2023-31458Same product: Mitel Mivoice Connect
CVE-2023-31460Same product: Mitel Mivoice Connect
CVE-2023-25598Same product: Mitel Mivoice Connect
CVE-2022-41223Same product: Mitel Mivoice Connect
CVE-2023-31459Same product: Mitel Mivoice Connect
CVE-2022-40765Same product: Mitel Mivoice Connect
CVE-2023-39287Same product: Mitel Mivoice Connect
Affected Assets
mitel
mivoice connect
≤ 22.24.1500.0
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.