CVE-2022-26143 - CVE House
Back to Database
Status published Unknown CVE-2022-26143

The TP-240 (aka tp240dvr) component in Mitel MiCollab before 9.4...

Vulnerability Description

The TP-240 (aka tp240dvr) component in Mitel MiCollab before 9.4 SP1 FP1 and MiVoice Business Express through 8.1 allows remote attackers to obtain sensitive information and cause a denial of service (performance degradation and excessive outbound traffic). This was exploited in the wild in February and March 2022 for the TP240PhoneHome DDoS attack.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-26143

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

micollab, mivoice business express
Vulnerable Versions:
0, 9.4

Timeline

Official Publish: March 9th, 2022
Last Modified: October 21st, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.