CVEs (16)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1.x before CM 3.1.4 SP2 and 4.0.x before 4.0.3 SP1 allows remote authenticated users to execute arbitrary commands via unknow...Show more |
Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1.x before CM 3.1.4 SP2 and 4.0.x before 4.0.3 SP1 allows remote authenticated administrators to gain root privileges via unk...Show more |
1Avaya 2Communication Manager Sip Enablement ServicesApr 23, 2026 Apr 10, 2009 N/A· v4 N/A· v3 9.0 HIGH· v2 Unspecified vulnerability in the Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used with Avaya Communication Manager 3.1.x, allows remote authenticated users to execute arbitrary command...Show more |
1Avaya 2Communication Manager Sip Enablement ServicesApr 23, 2026 Apr 10, 2009 N/A· v4 N/A· v3 9.0 HIGH· v2 Unspecified vulnerability in the Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used with Avaya Communication Manager 3.1.x and 4.x, allows remote authenticated administrators to gain roo...Show more |
1Avaya 2Communication Manager Sip Enablement ServicesApr 23, 2026 Apr 10, 2009 N/A· v4 N/A· v3 6.4 MEDIUM· v2 The Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used with Avaya Communication Manager 3.1.x, does not perform authentication for certain functionality, which allows remote attackers to...Show more |
1Avaya 2Communication Manager Sip Enablement ServicesApr 23, 2026 Apr 10, 2009 N/A· v4 N/A· v3 7.8 HIGH· v2 Multiple unspecified vulnerabilities in the Web management interface in Avaya SIP Enablement Services (SES) 3.x and 4.0, as used with Avaya Communication Manager 3.1.x, allow remote attackers to obtain (1) application se...Show more |
Unspecified vulnerability in the SIP server in SIP Enablement Services (SES) in Avaya Communication Manager 3.1.x and 4.x allows remote authenticated users to cause a denial of service (resource consumption) via unknown...Show more |
Unspecified vulnerability in SIP Enablement Services (SES) in Avaya Communication Manager 3.1.x and 4.x allows remote attackers to gain privileges and cause a denial of service via unknown vectors related to reuse of val...Show more |
Multiple SQL injection vulnerabilities in Avaya SIP Enablement Services (SES) in Avaya Avaya Communication Manager 3.x, 4.0, and 5.0 (1) allow remote attackers to execute arbitrary SQL commands via unspecified vectors re...Show more |
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1.x, 4.0.3, and 5.x allow remote attackers to read (1) configuration files, (2) log files, (3) binary image files...Show more |
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1 before 3.1.4 SP2, 4.0 before 4.0.3 SP1, and 5.0 before 5.0 SP3 allow remote authenticated users to execute arbi...Show more |
1Avaya 2Communication Manager Sip Enablement ServicesApr 23, 2026 Aug 25, 2008 N/A· v4 N/A· v3 7.5 HIGH· v2 The remote management interface in SIP Enablement Services (SES) Server in Avaya SIP Enablement Services 5.0, and Communication Manager (CM) 5.0 on the S8300C with SES enabled, proceeds with Core router updates even when...Show more |
1Avaya 2Communication Manager Sip Enablement ServicesApr 23, 2026 Aug 25, 2008 N/A· v4 N/A· v3 2.1 LOW· v2 The SIP Enablement Services (SES) Server in Avaya SIP Enablement Services 5.0, and Communication Manager (CM) 5.0 on the S8300C with SES enabled, writes account names and passwords to the (1) alarm and (2) system logs du...Show more |
7Avaya CanonicalDebian+4 more15Communication Manager Debian LinuxExpanded Meet Me Conferencing+12 moreApr 23, 2026 Jul 9, 2008 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving NULL pointer dereference...Show more |
Unspecified maintenance web pages in Avaya S87XX, S8500, and S8300 before CM 3.1.3, and Avaya SES allow remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors (aka "shell...Show more |
8Apache AppleAvaya+5 more14Apache Mod Digest Apple Communication ManagerHttp Server+11 moreApr 16, 2026 Feb 3, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials. |