SECURITY ADVISORIES
Mitel Product Security Advisories are published for moderate and high-risk security issues. Each advisory provides information on the status of investigation and provides additional information on products confirmed to be affected and recommended action to be taken by customers. Advisories are posted in reverse chronological order.
This information is provided on an "as is" basis and does not grant or imply any guarantees or warranties, including the warranties of merchantability or fitness for a particular use. Mitel does not guarantee that any of the information is accurate or up to date. By using the information, you acknowledge and agree that your use of the information, or the documents or materials linked to this information, is at your own risk. In addition, Mitel’s provision of this information shall not and does not affect the terms or conditions of any agreement with Mitel. Mitel reserves the right to change or update this information without notice at any time.
Click here for a more comprehensive details on Mitel’s Product Security Policy ›
Stay one step ahead.
Get notifications of the latest security advisories delivered straight to your inbox!
| Advisory ID | CVE# | Severity | Publish Date | Last Updated Sort ascending | |
|---|---|---|---|---|---|
| Security Advisory Report - OBSO-1607-01 | OBSO-1607-01 | info | |||
| Multiple Vulnerabilities in OpenSSL | 16-0013 | CVE-2016-2105, CVE-2016-2106, CVE-2016-2107, CVE-2016-2108, CVE-2016-2109, CVE-2016-2176, CVE-2016-2842 | high | ||
| XSS Vulnerability in MiCollab AWV | 16-0012 | high | |||
| Security Advisory Report - OBSO-1510-01 | OBSO-1510-01 | CVE-2015-7693 | medium | ||
| Multiple Vulnerabilities in ImageMagick | 16-0011 | CVE-2016-3714, CVE-2016-3715, CVE-2016-3716, CVE-2016-3717, CVE-2016-3718 | high | ||
| Java Deserialization Vulnerability | 15-0013 | medium | |||
| NTPD Vulnerabilities | 16-0004 | medium | |||
| Security Advisory Report - OBSO-1602-02 | OBSO-1602-02 | CVE-2015-7547 | high | ||
| Security Advisory Report - OBSO-1601-01 | OBSO-1601-01 | CVE-2016-0777 | low | ||
| Authentication Bypass and Toll-Fraud on MiVoice Office 250 / Mitel 5000 | 16-0009 | high | |||
| XSS vulnerability in MiCC 7.x | 16-0005 | medium | |||
| DROWN (OpenSSL vulnerability) - CVE-2016-0800 | 16-0008 | CVE-2016-0080 | medium | ||
| Security Advisory Report - OBSO-1603-01 | OBSO-1603-01 | info | |||
| glibc: getaddrinfo stack-based buffer overflow (CVE-2015-7547) | 16-0007 | high | |||
| SQL Injection Vulnerability in MiCollab | 16-0001 | high | |||
| Multiple Weaknesses in Mitel 6700/6800 series SIP phones | 16-0002 | info | |||
| OpenSSH Client Vulnerabilities | 16-0003 | CVE-2016-0777, CVE-2016-0778 | info | ||
| Security Advisory Report - OBSO-1512-04 | OBSO-1512-04 | CVE-2014-0227 | medium | ||
| Security Advisory Report - OBSO-1511-01 | OBSO-1511-01 | CVE-2015-8237, CVE-2015-8238 | high | ||
| Security Advisory Report - OBSO-1512-01 | OBSO-1512-02 | CVE-2015-0286 | medium | ||
| Multiple Oracle Java Vulnerabilities | 15-0013 | CVE-2015-4731, CVE-2015-4732, CVE-2015-4733, CVE-2015-4734, CVE-2015-4748, CVE-2015-4760, CVE-2015-4803, CVE-2015-4805, CVE-2015-4806, CVE-2015-4835, CVE-2015-4840, CVE-2015-4842, CVE-2015-4843, CVE-2015-4844, CVE-2015-4860, CVE-2015-4872, CVE-2015-4881, CVE-2015-4882, CVE-2015-4883, CVE-2015-4893, CVE-2015-4903, CVE-2015-4911 | high to medium | ||
| Security Advisory Report - OBSO-1511-02 | OBSO-1511-02 | CVE-2015-8251 | medium | ||
| Security Advisory Report - OBSO-1410-03 | OBSO-1410-03 | CVE-2025-XXXXX | low | ||
| Security Advisory Report - OBSO-1501-04 | OBSO-1501-04 | CVE-2015-0235 | low | ||
| Weakness in Diffie-Hellman key exchange / Logjam | 15-0004 | CVE-2015-1716 t, CVE-2015-4000 t | low | ||
| CGI Flaw in MiCollab AWV | 15-0004 | medium | |||
| OpenSSH: authentication limits (MaxAuthTries) bypass (CVE-2015-5600) | 15-0009 | CVE-2015-5600 | high | ||
| Security Advisory Report - OBSO-1408-04 | OBSO-1409-01 | CVE-2014-4244, CVE-2014-4263 | low | ||
| Security Advisory Report - OBSO-1508-02 | OBSO-1508-02 | CVE-2015-5391 | medium | ||
| Security Advisory Report - OBSO-1505-02 | OBSO-1505-02 | CVE-2014-9708 | medium |