CVE-2024-41710: Mitel SIP Phones Argument Injection Vulnerability

High severity, CVSS 7.2. Actively exploited: in CISA KEV since 2025-02-12. EPSS: 41.6% chance of exploitation in the next 30 days.

A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (R6.4.0.136) could allow an authenticated attacker with administrative privilege to conduct an argument injection attack, due to insufficient parameter sanitization during the boot process. A successful exploit could allow an attacker to execute arbitrary commands within the context of the system.

Affected products

  • Mitel 6863i SIP Firmware: up to and including 6.4.0.136
  • Mitel 6865i SIP Firmware: up to and including 6.4.0.136
  • Mitel 6867i SIP Firmware: up to and including 6.4.0.136
  • Mitel 6869i SIP Firmware: up to and including 6.4.0.136
  • Mitel 6873i SIP Firmware: up to and including 6.4.0.136
  • Mitel 6905 SIP Firmware: up to and including 6.4.0.136
  • Mitel 6910 SIP Firmware: up to and including 6.4.0.136
  • Mitel 6915 SIP Firmware: up to and including 6.4.0.136
  • Mitel 6920 SIP Firmware: up to and including 6.4.0.136
  • Mitel 6920w SIP Firmware: up to and including 6.4.0.136
  • Mitel 6930 SIP Firmware: up to and including 6.4.0.136
  • Mitel 6930w SIP Firmware: up to and including 6.4.0.136
  • Mitel 6940 SIP Firmware: up to and including 6.4.0.136
  • Mitel 6940w SIP Firmware: up to and including 6.4.0.136
  • Mitel 6970 Firmware: up to and including 6.4.0.136

Published 2024-08-12. Last modified 2026-06-17.