Skip to content
COOEY

EXPOSURES › CVE-2022-41223

CVE-2022-41223

CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2023-02-21 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2022-41223 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 85/100 ransomwarerceexploited-in-wildunpatched

An authenticated internal attacker could execute code in Mitel MiVoice Connect via CVE-2022-41223, a vulnerability actively exploited in the wild and linked to ransomware.

Mitel MiVoice Connect suffered a code injection flaw allowing authenticated internal attackers to execute arbitrary code within the application context. This failure is critical for DIB organizations because it was actively exploited in the wild and linked to ransomware campaigns, indicating severe negligence and avoidability. Organizations must ensure all Mitel systems are patched and isolated from internal networks to prevent similar compromises.

Shame score — The vulnerability was actively exploited in the wild and linked to ransomware, demonstrating severe negligence and avoidability.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

The Director component in Mitel MiVoice Connect allows an authenticated attacker with internal network access to execute code within the context of the application.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.