Mitel OpenScape 4000 Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in the Platform component of Mitel OpenScape 4000 and OpenScape 4000 Manager, affecting versions V10 R1.54.0 through V10 R1.54.1, V11 R0.22.0 through V11 R0.22.1, and V10 R1.42.6 and earlier. This vulnerability could allow an authenticated attacker to execute arbitrary commands with elevated privileges by exploiting a resource that is granted unnecessary privileges. The successful exploitation of this vulnerability could lead to unauthorized access and control over the system, potentially allowing a non-administrative user to gain full administrative rights.

Impact

Exploitation of this vulnerability could allow an authenticated attacker to execute arbitrary commands with elevated privileges, potentially leading to full control over the affected system.

Remediation

Users are advised to upgrade to OpenScape 4000 PLT Hotfix (System & Manager) V11 R0.22.2 or later, or to OpenScape 4000 PLT Hotfix (System & Manager) V10 R1.54.2 or V10 R1.42.7 or later. For further information, please contact Mitel Product Support.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
7.5
exploitability
4.9
remediation
8.3
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.