#mitel — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #mitel, aggregated by home.social.
-
#DuckDuckFedi How does one connect a #Mitel #DECT handset to a home base station ? The station only has a "pairing" button and knows nothing about an author code or the IPEI. Maybe folks from @eventphone ?
-
Mitel MiCollab zero-day and PoC exploit unveiled https://www.helpnetsecurity.com/2024/12/05/mitel-micollab-zero-day-and-poc-exploit-unveiled/ #collaboration #enterprise #Don'tmiss #WatchTowr #Hotstuff #0-day #Mitel #News #CVE #PoC
-
Remote code execution and elevation of local privileges in #Mitel Unify #OpenStage and #OpenScape VoIP phones
https://www.pentagrid.ch/en/blog/rce-and-local-root-in-openstage-and-openscape-phones/
I especially like attack number 5 “OpenScape – Secure Shell Privilege escalation to root via SetUID programs”
* Manipulate the framebuffer, so a screenshot results in an executable file.
* Overwrite a system file with that screenshot tool.
* Add a script to that gets executed with root privilege while booting.https://github.com/pentagridsec/openstage-exploit-chain/blob/main/openstage-fakedls-server.py