Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-26143

KEV EPSS 89.15% · P100
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-26143

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The TP-240 (aka tp240dvr) component in Mitel MiCollab before 9.4 SP1 FP1 and MiVoice Business Express through 8.1 allows remote attackers to obtain sensitive information and cause a denial of service (performance degradation and excessive outbound traffic). This was exploited in the wild in February and March 2022 for the TP240PhoneHome DDoS attack.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Mitel Networks MiCollab和Mitel Networks MiVoice Business Express 访问控制错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Mitel Networks MiCollab和Mitel Networks MiVoice Business Express都是加拿大Mitel Networks公司的产品。Mitel Networks MiCollab是一款为员工提供语音、视频、消息、音频会议和团队协作的移动应用程序。Mitel Networks MiVoice Business Express是一套实时通信解决方案。 Mitel MiCollab 9.4 SP1 FP1 之前版本和 MiVoice Business Express
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2022-26143

#POC DescriptionSource LinkShenlong Link
1Mitel MiCollab before 9.4 SP1 FP1 and MiVoice Business Express through 8.1 contain a vulnerability in the TP-240 component caused by improper handling, letting remote attackers obtain sensitive information and cause denial of service, exploit requires remote access. https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2022-26143.yamlPOC Details
2Mitel MiCollab before 9.4 SP1 FP1 and MiVoice Business Express through 8.1 contain a vulnerability in the TP-240 component caused by improper handling, letting remote attackers obtain sensitive information and cause denial of service, exploit requires remote access. https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2022/CVE-2022-26143.yamlPOC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-26143

登录查看更多情报信息。

Same Patch Batch · n/a · 2022-03-09 · 50 CVEs total

CVE-2022-249606.5 MEDIUMUse after free vulnerability in PDFTron SDK
CVE-2022-267785.3 MEDIUMVeritas System Recovery安全漏洞
CVE-2022-0204BlueZ 输入验证错误漏洞
CVE-2022-25552Tenda AX1806 缓冲区错误漏洞
CVE-2021-44631TP-Link WR886N 安全漏洞
CVE-2021-44627TP-LINK WR-886N 安全漏洞
CVE-2021-44629TP-LINK WR-886N 安全漏洞
CVE-2021-44628TP-Link WR886N 安全漏洞
CVE-2021-44630TP-Link WR886N 安全漏洞
CVE-2022-25566Tenda AX1806 缓冲区错误漏洞
CVE-2022-25561Tenda AX12 缓冲区错误漏洞
CVE-2022-25560Tenda AX12 缓冲区错误漏洞
CVE-2022-25558Tenda AX1806 缓冲区错误漏洞
CVE-2022-25557Tenda AX1806 缓冲区错误漏洞
CVE-2022-25556Tenda AX12 缓冲区错误漏洞
CVE-2022-25555Tenda AX1806 缓冲区错误漏洞
CVE-2022-25547Tenda AX1806 缓冲区错误漏洞
CVE-2022-25554Tenda AX1806 缓冲区错误漏洞
CVE-2022-25553Tenda AX1806 缓冲区错误漏洞
CVE-2021-44632TP-Link WR886N 安全漏洞

Showing top 20 of 50 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2022-26143

No comments yet


Leave a comment