Mitel MiCollab Unauthorized Access
What is the attack? | Security flaws in Mitel MiCollab, CVE-2024–35286 and CVE-2024–41713, have been found, putting many organizations at risk. These vulnerabilities allow attackers bypass authentication and access files on affected servers, revealing sensitive information that could expose organizations to serious security risks. |
What is the recommended Mitigation? | Mitel has released fixes for the vulnerabilities. Organizations that have not implemented the latest patch are advised to do so immediately and monitor vendor advisories for further patch releases and information. |
What FortiGuard Coverage is available? |
|
Outbreak Alert
Security flaws in Mitel MiCollab, CVE-2024–35286, CVE-2024–41713, and an arbitrary file read zero-day (still without a CVE number) have been found, putting many organizations at risk. These vulnerabilities allow attackers to bypass authentication and access files on affected servers, revealing sensitive information that could expose organizations to serious security risks.
Additional Resources
Mitel Product Security Advisory 24-0014
Mitel Product Security Advisory MISA-2024-0029
FortiClient Vulnerability | FortiGuard Labs