CVE detail
CVE-2021-26714 — CVE-2021-26714
Published 2021-03-29 · Modified 2026-06-17 · Vendor mitel · Product micontact_center_enterprise · Source nvd
CRITICAL
severity
CVSS-derived band
0.0252
EPSS probability
exploitation probability, 30d
83.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The Enterprise License Manager portal in Mitel MiContact Center Enterprise before 9.4 could allow a user to access restricted files and folders due to insufficient access control. A successful exploit could allow an attacker to view and modify application data via Directory Traversal.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References