CVE-2024-28815

A vulnerability in the BluStar component of Mitel InAttend 2.6 SP4 through 2.7 and CMG 8.5 SP4 through 8.6 could allow access to sensitive information, changes to the system configuration, or execution of arbitrary commands within the context of the system.
Configurations

No configuration.

History

21 Nov 2024, 09:06

Type Values Removed Values Added
References () https://cwe.mitre.org/data/definitions/1188.html - () https://cwe.mitre.org/data/definitions/1188.html -
References () https://www.mitel.com/-/media/mitel/file/pdf/support/security-advisories/security-bulletin_24-0003-001-v1.pdf - () https://www.mitel.com/-/media/mitel/file/pdf/support/security-advisories/security-bulletin_24-0003-001-v1.pdf -
References () https://www.mitel.com/support/security-advisories - () https://www.mitel.com/support/security-advisories -
References () https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-24-0003 - () https://www.mitel.com/support/security-advisories/mitel-product-security-advisory-24-0003 -

01 Aug 2024, 13:49

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-1188

30 Apr 2024, 07:15

Type Values Removed Values Added
References
  • () https://cwe.mitre.org/data/definitions/1188.html -
  • () https://www.mitel.com/-/media/mitel/file/pdf/support/security-advisories/security-bulletin_24-0003-001-v1.pdf -

27 Mar 2024, 12:29

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad en el componente BluStar de Mitel InAttend 2.6 SP4 a 2.7 y CMG 8.5 SP4 a 8.6 podría permitir el acceso a información confidencial, cambios en la configuración del sistema o la ejecución de comandos arbitrarios dentro del contexto del sistema.

27 Mar 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-27 07:15

Updated : 2024-11-21 09:06


NVD link : CVE-2024-28815

Mitre link : CVE-2024-28815

CVE.ORG link : CVE-2024-28815


JSON object : View

Products Affected

No product.

CWE
CWE-1188

Initialization of a Resource with an Insecure Default