CVE-2020-28351
MEDIUM NUCLEIMitel ShoreTel 19.46.1802.0 - Unauthenticated Reflected Cross-Site Scripting via PATH_INFO to index.php
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2020-28351. PoCs published by Joe Helle, dievus. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit demonstrates a reflected XSS vulnerability in Mitel ShoreTel Conferencing 19.46.1802.0 via the PATH_INFO to index.php. The payload executes when the mouse hovers over a time_zone dropdown object on the HOME_MEETINGS page.
Description
The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object in the HOME_MEETING& page.
Exploits (2)
This exploit demonstrates a reflected XSS vulnerability in Mitel ShoreTel Conferencing 19.46.1802.0 via the PATH_INFO to index.php. The payload executes when the mouse hovers over a time_zone dropdown object on the HOME_MEETINGS page.
This repository contains a writeup describing a reflected XSS vulnerability in Mitel ShoreTel 19.46.1802.0. The vulnerability is triggered via the PATH_INFO in index.php, specifically through the time_zone object in the HOME_MEETINGS page.
Nuclei Templates (1)
body="ShoreTel" && icon_hash="268280373"
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N