PT-2007-2884 · Avaya · Avaya Ses+3
Published
2007-03-16
·
Updated
2008-09-05
·
CVE-2007-1490
CVSS v2.0
6.0
Medium
| Vector | AV:N/AC:M/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Avaya S87XX versions prior to CM 3.1.3
Avaya S8500 versions prior to CM 3.1.3
Avaya S8300 versions prior to CM 3.1.3
Avaya SES (affected versions not specified)
Description
The issue allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors, which can be described as a shell command injection.
Recommendations
For Avaya S87XX, S8500, and S8300, update to CM 3.1.3 or later to resolve the issue.
For Avaya SES, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Avaya S8300
Avaya S8500
Avaya S87Xx
Avaya Ses