CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

mitel

6970_firmware

3 known vulnerabilities · sorted by CVSS score

CVE-2024-28066
HIGH8.8

In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password).

mitel / 6940w_firmware+13
Adjacent
Published Apr 8, 2024
CVE-2020-13617
HIGH7.5

The Web UI component of Mitel MiVoice 6800 and 6900 series SIP Phones with firmware before 5.1.0.SP5 could allow an unauthenticated attacker to expose sensitive information due to improper memory handling during failed login attempts.

mitel / 6863_firmware+65
Network
Published Aug 26, 2020
CVE-2024-41710
HIGH7.2

A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (R6.4.0.136) could allow an authenticated attacker with administrative privilege to conduct an argument injection attack, due to insufficient parameter sanitization during the boot process. A successful exploit could allow an attacker to execute arbitrary commands within the context of the system.

mitel / 6970_firmware+14
Network
Published Aug 12, 2024