9
CVE-2008-6711
- EPSS 2.45%
- Veröffentlicht 10.04.2009 22:00:00
- Zuletzt bearbeitet 16.06.2026 23:02:49
- Erkennungen
Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1.x before CM 3.1.4 SP2 and 4.0.x before 4.0.3 SP1 allows remote authenticated users to execute arbitrary commands via unknown vectors related to "viewing system logs."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Avaya ≫ Communication Manager Version 3.1
Avaya ≫ Communication Manager Version 3.1.1
Avaya ≫ Communication Manager Version 3.1.2
Avaya ≫ Communication Manager Version 3.1.3
Avaya ≫ Communication Manager Version 3.1.4
Avaya ≫ Communication Manager Version 3.1.4 Update sp1
Avaya ≫ Communication Manager Version 4.0
Avaya ≫ Communication Manager Version 4.0.1
Avaya ≫ Communication Manager Version 4.0.1 Update sp15215
Avaya ≫ Communication Manager Version 4.0.1 Update sp15500
Avaya ≫ Communication Manager Version 4.0.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.45% | 0.822 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9 | 8 | 10 |
AV:N/AC:L/Au:S/C:C/I:C/A:C
|
http://www.securityfocus.com/bid/29939
http://secunia.com/advisories/30799
http://support.avaya.com/elmodocs2/security/ASA-2008-270.htm
http://www.vupen.com/english/advisories/2008/1944/references
http://www.osvdb.org/46581
http://www.voipshield.com/research-details.php?id=80
https://exchange.xforce.ibmcloud.com/vulnerabilities/43391