CVE-2025-67822
A vulnerability in the Provisioning Manager component of Mitel MiVoice MX-ONE 7.3 (7.3.0.0.50) through 7.8 SP1 (7.8.1.0.14) could allow an unauthenticated attacker to conduct an authentication bypass attack due to improper authentication mechanisms. A successful exploit could allow an attacker to gain unauthorized access to user or admin accounts in the system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67822?
The severity of CVE-2025-67822 is considered high due to the potential for unauthenticated access and exploitation of sensitive information.
How do I fix CVE-2025-67822?
To fix CVE-2025-67822, upgrade Mitel MiVoice MX-ONE to version 7.8.1.0.15 or later, which addresses the vulnerability.
Who is affected by CVE-2025-67822?
CVE-2025-67822 affects users of Mitel MiVoice MX-ONE versions 7.3.0.0.50 through 7.8 SP1 (7.8.1.0.14).
What kind of attack does CVE-2025-67822 allow?
CVE-2025-67822 allows an unauthenticated attacker to perform an authentication bypass attack due to improper authentication mechanisms.
Can CVE-2025-67822 be exploited remotely?
Yes, CVE-2025-67822 can be exploited remotely, allowing attackers to gain unauthorized access without physical access.