CISA Known Exploited Vulnerability

CVE-2022-29499 Ransomware

Mitel · MiVoice Connect

Mitel MiVoice Connect Data Validation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-20
Ransomware Known

CISA description

The Service Appliance component in Mitel MiVoice Connect allows remote code execution due to incorrect data validation.

Required action

Apply updates per vendor instructions.