CVE-2020-10377: Mitel MiVoice Connect Client

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A weak encryption vulnerability in Mitel MiVoice Connect Client before 214.100.1214.0 could allow an unauthenticated attacker to gain access to user credentials. A successful exploit could allow an attacker to access the system with compromised user credentials.

Affected products

  • Mitel MiVoice Connect Client: up to and including 214.100.1213.0

Published 2020-04-17. Last modified 2026-06-17.