← Back

CVE-2018-15615

nvd nist
Published: Sep 24, 2018Modified: Nov 21, 2024

JSON object

Loading...
4.4
Vector
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Exploitability: 0.8 / Impact: 3.6
Source: NVD

Description

A vulnerability in the Supervisor component of Avaya Call Management System allows local administrative user to extract sensitive information from users connecting to a remote CMS host. Affected versions of CMS Supervisor include R17.0.x and R18.0.x.

Affected (3)

1 product
Call Management System Supervisor
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Avaya
Version 17.0.0
Version 18.0.1.0
Version 18.0.2.0

References (4)

Source: securityalerts@avaya.com
Third Party AdvisoryVDB Entry
Source: securityalerts@avaya.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.