A AegiFlow
LOWCVSS 2.7KNOWN EXPLOITEDRANSOMWARE: KNOWN

CVE-2024-55550

CVE-2024-55550 updated by NVD

Published
2025-01-07
Modified
2026-09-21
Sources
cisa-kev, nvd

Summary

Mitel MiCollab through 9.8 SP2 could allow an authenticated attacker with administrative privilege to conduct a local file read, due to insufficient input sanitization. A successful exploit could allow the authenticated admin attacker to access resources that are constrained to the admin access level, and the disclosure is limited to non-sensitive system information. This vulnerability does not allow file modification or privilege escalation.

References

Includes data from the CISA Known Exploited Vulnerabilities catalog.

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.