Security Vulnerabilities fixed in MiCollab Client 9.3

description-logoDescription

The MiCollab Client service in Mitel MiCollab before 9.3 could allow an unauthenticated user to gain system access due to improper access control. A successful exploit could allow an attacker to view and modify application data, and cause a denial of service for users. Insufficient output santization exploit could allow an attacker view source code methods, clickjacking attack due to an insecure header response could alllow an attacker to modify the browser header and redirect users, and Man-In-the-Middle attack due to improper TLS negotiation could allow an attacker to view and modify data.

affected-products-logoAffected Applications

MiCollab Client