Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Sam Altman warns that ChatGpt is not legally confidential when using it as a therapist

It took Google a month to shut down Catwatchful, a phone spyware operation hosted on the server

N. The US sanctions company behind the Korean IT scheme. Arizona woman was jailed to run a laptop farm

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Critical Mitel flaws allow hackers bypass logins and fully access the Mivoice MX-One system
Identity

Critical Mitel flaws allow hackers bypass logins and fully access the Mivoice MX-One system

userBy userJuly 24, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

July 24, 2025Ravi LakshmananVulnerability/Network Security

Mitel has released a security update to address critical security flaws in the Mivoice MX-One, which allows attackers to bypass authentication protection.

“Auth bypass vulnerability has been identified in the provisioning manager component of MITEL MIVOICE MX-ONE, which allows inaccurate attackers to carry out authentication bypass attacks with inappropriate access control,” the company announced Wednesday.

“The successful vulnerability allows an attacker to gain unauthorized access to users or administrator accounts within the system.”

Cybersecurity

The drawbacks that have not yet been assigned a CVE identifier include a CVSS score of 9.4 out of a maximum of 10.0. Affects Mivoice MX-One versions from 7.3 (7.3.0.0.50) to 7.8 SP1 (7.8.1.0.14).

Patches for this issue are now available on MXO-15711_78SP0 and MXO-15711_78SP1, respectively. Customers using Mivoice MX-One version 7.3 or later are advised to submit patch requests to authorized service partners.

It is recommended to limit the direct exposure of MX-One services to the public internet, and ensure that they are located within a trusted network, as they will be mitigated until the fix is applied.

In addition to the authentication bypass flaws, Mytel has sent an update to resolve advanced vulnerabilities in My Club (CVE-2025-52914, CVSS score: 8.8).

“If the exploit is successful, an attacker can access user provisioning information, potentially affecting system confidentiality, integrity and availability, and execute any SQL database command,” says Mitel.

Cybersecurity

Vulnerabilities affecting Micollab versions 10.0 (10.0.0.26) and 10.0 SP1 FP1 (10.0.1.101) and 9.8 SP3 (9.8.3.1) were resolved in versions 10.1 (10.1.0.10), 9.8 SP3 FP1 (9.8.3.103).

Due to the drawbacks of Mytel devices in the past, it is essential that users move quickly to update their installations as quickly as possible to mitigate potential threats.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous Article3i/Atlas is 7 miles wide – the largest interstellar object ever seen – new photo from Vera C. Rubin Observatory
Next Article Apple iOS 26 Public Beta Arrival
user
  • Website

Related Posts

N. The US sanctions company behind the Korean IT scheme. Arizona woman was jailed to run a laptop farm

July 25, 2025

Patchwork targets Turkish defense companies with spear phishing using malicious LNK files

July 25, 2025

Cyberspy Campaign hits Russian aerospace sector using Eaglet Backdoor

July 25, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Sam Altman warns that ChatGpt is not legally confidential when using it as a therapist

It took Google a month to shut down Catwatchful, a phone spyware operation hosted on the server

N. The US sanctions company behind the Korean IT scheme. Arizona woman was jailed to run a laptop farm

Tesla is reportedly bringing a limited version of its robotaxis service to San Francisco

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Tim Berners-Lee Unveils the “Missing Link”: How the Web’s Architect Is Building AI’s Trusted Future

Dispatch from London Tech Week: Keir Starmer, The Digital Twin Boom, and FySelf’s Game-Changing TwinH

Is ‘Baby Grok’ the Future of Kids’ AI? Elon Musk Launches New Chatbot

Next-Gen Digital Identity: How TwinH and Avatars Are Redefining Creation

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.