CVE-2020-28351
ShoreTel Conferencing 19.46.1802.0 - Reflected Cross-Site Scripting
Record summary
CVE-2020-28351 has a selected CVSS score of 6.1 (medium); EIP currently links 1 catalogued exploit, 1 repository PoC, and 1 Nuclei template.
Description
The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object in the HOME_MEETING& page.
Exploitation context
Proofs of concept
2Catalogued exploits
ExploitDBShoreTel Conferencing 19.46.1802.0 - Reflected Cross-Site ScriptingExploitDB exploitby Joe HelleNot analyzed1 file
Repository PoCs
GitHubdievus/CVE-2020-28351Repository PoCby dievusStars: 3Not analyzed4 files
Nuclei templates
1ProjectDiscoveryMEDIUMMitel ShoreTel 19.46.1802.0 Devices - Cross-Site ScriptingCVSS 6.1
Mitel ShoreTel 19.46.1802.0 devices and their conference component are vulnerable to an unauthenticated attacker conducting reflected cross-site scripting attacks via the PATH_INFO variable to index.php due to insufficient validation for the time_zone object in the HOME_MEETING& page.
Impact
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary scripts in the victim's browser, leading to session hijacking, defacement, or theft of sensitive information.
Remediation
Apply the latest security patches or updates provided by Mitel to mitigate the XSS vulnerability.
Source: ProjectDiscovery