๐Ÿ” CVE Alert

CVE-2026-104805

UNKNOWN 0.0

Mitel MiVoice Office 400 Backup Restoration Arbitrary File Write Leading to Root Code Execution

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

DigitalCanion has discovered a vulnerability in the backup restoration functionality that allows an attacker with access to the configured backup repository to introduce arbitrary files into the system during restoration. The specific flaw exists within the backup restoration mechanism, which fails to properly validate the paths, file types, integrity, and authenticity of files contained within a restored TGZ archive. The application does not perform file-signature verification before extracting the archive, allowing a specially crafted backup to contain attacker-controlled files. An attacker with access to the backup SFTP or other configured repository can therefore provide a malicious TGZ archive that, when restored by the system, may place arbitrary files on the underlying Linux system. Depending on the location and permissions of the extracted files, this behavior can potentially be leveraged to achieve arbitrary code execution with root privileges and compromise the underlying virtual machine. The absence of enforced backup passwords further reduces the protection provided by the backup mechanism and may facilitate unauthorized access to the repository.

CWE CWE-22 CWE-73 CWE-494 CWE-345 CWE-434
Vendor mitel
Product mitel mivoice office 400
Published Oct 5, 2026
Last Updated Oct 5, 2026
Stay Ahead of the Next One

Get instant alerts for mitel mitel mivoice office 400

Be the first to know when new unknown vulnerabilities affecting mitel mitel mivoice office 400 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Mitel / Mitel MiVoice Office 400
11.0.96.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
digitalcanion.com: https://digitalcanion.com/en/security-research/#vendor=mitel&status=cna

Credits

Brian Mariani from DigitalCanion SA