← Back to CVE List
CVE-2025-52914NVD
Vulnerability Summary
A vulnerability in the Suite Applications Services component of Mitel MiCollab 10.0 through SP1 FP1 (10.0.1.101) could allow an authenticated attacker to conduct a SQL Injection attack due to insufficient validation of user input. A successful exploit could allow an attacker to execute arbitrary SQL database commands.
CVSS v3.1 Base Metrics — Score 8.8 (HIGH)
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh
Affected & Patched Versions
- Mitel Micollab < 9.8.3.103
- Mitel Micollab >= 10.0.0.26 and < 10.1.0.10
- Mitel Micollab 9.8.3.103
- Mitel Micollab 10.1.0.10