mitel mivoice-office-400 CVE-2018-16226 is a vulnerability in Mitel Mivoice Office 400
Published on October 23, 2018

A vulnerability in the web admin component of Mitel MiVoice Office 400, versions R5.0 HF3 (v8839a1) and earlier, could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack, due to insufficient validation for the start.asp page. A successful exploit could allow the attacker to execute arbitrary scripts to access sensitive browser-based information.

NVD


Products Associated with CVE-2018-16226

Want to know whenever a new CVE is published for Mitel Mivoice Office 400? stack.watch will email you.

 

Exploit Probability

EPSS
0.23%
Percentile
45.58%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.