9

CVE-2008-6710

Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1.x before CM 3.1.4 SP2 and 4.0.x before 4.0.3 SP1 allows remote authenticated administrators to gain root privileges via unknown vectors related to "configuring data viewing or restoring credentials."

Data is provided by the National Vulnerability Database (NVD)
AvayaCommunication Manager Version3.1
AvayaCommunication Manager Version3.1.1
AvayaCommunication Manager Version3.1.2
AvayaCommunication Manager Version3.1.3
AvayaCommunication Manager Version4.0
AvayaCommunication Manager Version4.0.1
AvayaCommunication Manager Version4.0.1 Updatesp15215
AvayaCommunication Manager Version4.0.1 Updatesp15500
AvayaCommunication Manager Version4.0.2
AvayaCommunication Manager Version4.0.2 Updatesp1
AvayaCommunication Manager Version4.0.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.67% 0.814
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9 8 10
AV:N/AC:L/Au:S/C:C/I:C/A:C