The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary scripts due to improper authorization controls. A successful exploit could allow remote code execution within the context of the application.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Micollab | Mitel | * | 9.6.0.105 (including) |