claytonvantol.us
SESSION: secure TLS: 1.3 PID: 1337

clayton@site:~/news$ cat cve-2022-41223-mitel-mivoice-connect.log

CVE-2022-41223 — Mitel MiVoice Connect Code Injection Vulnerability

2023-02-21 • CISA Known Exploited Vulnerability


[event] The Director component in Mitel MiVoice Connect allows an authenticated attacker with internal network access to execute code within the context of the application.

> AFFECTED SOFTWARE

Field Value
Vendor Mitel
Product MiVoice Connect
CWE CWE-94
CVE ID CVE-2022-41223
Date Added 2023-02-21
Due Date 2023-03-14
Ransomware Campaign Known — this vulnerability has been leveraged in ransomware campaigns

> MITIGATION

Apply updates per vendor instructions.

Due Date: 2023-03-14

> REFERENCES


← back to terminal

UPTIME: 1337d v2.0.1 privacy LAST LOGIN: 2026-05-30 20:36:11 UTC