← Back to browse · API

CVE-2024-55550

Severity
MEDIUM
CVSS
4.4
EPSS
0.38104
Risk score
55.94
CISA KEV
Yes
PoC
No
Published
2025-01-07
Modified
2025-01-07
First seen
2026-08-05
Aliases
EUVD-2024-52803, GHSA-4C8H-4MM2-MM5G
Products
Mitel:MiCollab, mitel:micollab, n/a:n/a n/a
Sources
euvd EUVD-2024-52803
cisa.gov CVE-2024-55550
nvd CVE-2024-55550

Description

Mitel MiCollab contains a path traversal vulnerability that could allow an authenticated attacker with administrative privileges to read local files within the system due to insufficient input sanitization. This vulnerability can be chained with CVE-2024-41713, which allows an unauthenticated, remote attacker to read arbitrary files on the server.

References