New Aquabot Botnet Exploits CVE-2024-41710 in Mitel Phones for DDoS Attacks
An active attempt has been made to use a medium-severity security hole affecting Mitel phones to entangle them in a network that may launch distributed denial-of-service (DDoS) assaults using a Mirai botnet variation known as Aquabot.
CVE-2024-41710 (CVSS score: 6.8) is the vulnerability in question, which is a case of command injection in the boot process that might enable a malevolent actor to carry out arbitrary operations within the context of the phone.
The Mitel 6970 Conference Unit, 6800 Series, 6900 Series, and 6900w Series SIP phones are all impacted. In mid-July 2024, Mitel addressed it. In August, a proof-of-concept (PoC) exploit for the vulnerability was made accessible to the general public read more about New Aquabot Botnet Exploits CVE-2024-41710 in Mitel Phones for D...

