vendor:
Mitel Connect ONSITE ST 14.2
by:
twosevenzero
9.8
CVSS
CRITICAL
Remote Code Execution
78
CWE
Product Name: Mitel Connect ONSITE ST 14.2
Affected Version From: 19.49.5200.0
Affected Version To: 19.49.5200.0
Patch Exists: YES
Related CWE: CVE-2018-5782
CPE: 2.3:a:mitel:mitel_connect_onsite_st_14.2
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Ruby
2019
ShoreTel / Mitel Connect ONSITE ST14.2 Remote Code Execution
There are multiple vulnerabilities in ShoreTel/Mitel Connect ONSITE ST 14.2 which, when chained together, result in remote code execution in the context of the running service. The vendor was contacted by Jared McLaren of SecureWorks in early 2018 but a proof of concept was not released. I had access to a single device during the development of this exploit. As such, your system paths may be different and you may need to edit this script to fit your needs.
Mitigation:
The vendor has released a response stating that the newest versions are not affected. Please see their response for upgrade instructions.