Security
Loading…

CVE-2024-41710

UNKNOWNKnown Exploited
Description

Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, contain an argument injection vulnerability due to insufficient parameter sanitization during the boot process. Successful exploitation may allow an attacker to execute arbitrary commands within the context of the system.

Timeline
Published:February 12th, 2025 12:00 AM
Last modified:February 12th, 2025 12:00 AM
Added to KEV:February 12th, 2025
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Mitel

Products

SIP Phones
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute