← Back to CVE List

CVE-2023-39285

Published: 2023-09-14T19:16Z
Last Modified: 2024-11-21T08:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an unauthenticated attacker to perform a Cross Site Request Forgery (CSRF) attack due to insufficient request validation. A successful exploit could allow an attacker to provide a modified URL, potentially enabling them to modify system configuration settings. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt