CVE-2025-23093

The Platform component of Mitel OpenScape 4000 and OpenScape 4000 Manager through V10 R1.54.1 and V11 through R0.22.1 could allow an authenticated attacker to conduct a privilege escalation attack due to the execution of a resource with unnecessary privileges. A successful exploit could allow an attacker to execute arbitrary commands with elevated privileges.
Configurations

No configuration.

History

12 Feb 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.3
v2 : unknown
v3 : 8.8

11 Feb 2025, 22:15

Type Values Removed Values Added
CWE CWE-269
Summary
  • (es) El componente Plataforma de Mitel OpenScape 4000 y OpenScape 4000 Manager a través de V10 R1.54.1 y V11 a través de R0.22.1 podría permitir que un atacante autenticado realice un ataque de escalada de privilegios debido a la ejecución de un recurso con privilegios innecesarios. Una explotación exitosa podría permitir que un atacante ejecute comandos arbitrarios con privilegios elevados.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.3

06 Feb 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-06 20:15

Updated : 2025-02-12 15:15


NVD link : CVE-2025-23093

Mitre link : CVE-2025-23093

CVE.ORG link : CVE-2025-23093


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management