cognitive cybersecurity intelligence

News and Analysis

Search

Critical Vulnerabilities in Mitel SIP Phones Let Attackers Inject Malicious Commands

Critical Vulnerabilities in Mitel SIP Phones Let Attackers Inject Malicious Commands

Researchers found severe vulnerabilities in Mitel’s SIP phones, notably CVE-2025-47188, a critical command injection flaw with a CVSS score of 9.8, affecting 6800, 6900, and 6900w Series models. This allows unauthenticated attackers to execute commands and access sensitive data. A secondary vulnerability (CVE-2025-47187) permits file uploads. Mitel recommends updating to firmware R6.4.0.SP5 to mitigate risks.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts