Skip to main content

MiCollab vulnerabilities

2 published alerts for Mitel MiCollab.

Actively exploited (KEV)Ransomware

CVE-2024-55550

Mitel MiCollab Path Traversal Vulnerability

Mitel MiCollab is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2024-55550). Mitel MiCollab contains a path traversal vulnerability that could allow an authenticated attacker with administrative privileges to read local files within the system due to insufficient input sanitization. This vulnerability can be chained with CVE-2024-41713, which allows an unauthenticated, remote attacker to read arbitrary files on the server. CISA remediation due date: 2025-01-28. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)Ransomware

CVE-2024-41713

Mitel MiCollab Path Traversal Vulnerability

Mitel MiCollab is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2024-41713). Mitel MiCollab contains a path traversal vulnerability that could allow an attacker to gain unauthorized and unauthenticated access. This vulnerability can be chained with CVE-2024-55550, which allows an unauthenticated, remote attacker to read arbitrary files on the server. CISA remediation due date: 2025-01-28. If you need help checking exposure, call (864) 335-9223.