CVE-2020-13863: Mitel MiCollab

High severity, CVSS 8.1. EPSS: 1.1% chance of exploitation in the next 30 days.

The SAS portal of Mitel MiCollab before 9.1.3 could allow an attacker to access user data by performing a header injection in HTTP responses, due to the improper handling of input parameters. A successful exploit could allow an attacker to access user information.

Affected products

  • Mitel MiCollab: before 9.1.3 (fixed in 9.1.3)

Published 2020-08-26. Last modified 2026-06-17.