Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2022-41223

Mitel | MiVoice ConnectAdded 2023-02-21Remediation Deadline 2023-03-14Active Ransomware Campaign

Mitel MiVoice Connect Code Injection Vulnerability

The Director component in Mitel MiVoice Connect allows an authenticated attacker with internal network access to execute code within the context of the application.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-94

References