Loading
A vulnerability in the web conferencing component of Mitel MiCollab through 9.6.2.9 could allow an unauthenticated attacker to download a shared file via a crafted request - including the exact path and filename - due to improper authentication control. A successful exploit could allow access to sensitive information.
Use CWE-287, Mitel vendor hub and Micollab product page to widen CVE-2023-25597 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-41713, CVE-2024-55550 and CVE-2024-35314 for nearby disclosures in the same product family.