VYPR
High severity8.8NVD Advisory· Published Oct 25, 2022· Updated Jun 17, 2026

CVE-2022-36451

CVE-2022-36451

Description

A vulnerability in the MiCollab Client server component of Mitel MiCollab through 9.5.0.101 could allow an authenticated attacker to conduct a Server-Side Request Forgery (SSRF) attack due to insufficient restriction of URL parameters. A successful exploit could allow an attacker to leverage connections and permissions available to the host server.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Mitel/Micollab2 versions
    cpe:2.3:a:mitel:micollab:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:mitel:micollab:*:*:*:*:*:*:*:*range: <=9.5.0.101
    • (no CPE)
  • Range: <=9.5.0.101

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.