Researchers found severe vulnerabilities in Mitel’s SIP phones, notably CVE-2025-47188, a critical command injection flaw with a CVSS score of 9.8, affecting 6800, 6900, and 6900w Series models. This allows unauthenticated attackers to execute commands and access sensitive data. A secondary vulnerability (CVE-2025-47187) permits file uploads. Mitel recommends updating to firmware R6.4.0.SP5 to mitigate risks.

Qantas confirms cyber incident impacting customer data – Cyber Daily
Summarize this content to a maximum of 60 words: Qantas confirms cyber incident impacting customer data Cyber Daily