PT-2021-12640 · Avaya · Avaya Equinox Conferencing

Alex Joss

+1

·

Published

2021-04-28

·

Updated

2022-08-05

·

CVE-2020-7038

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Avaya Equinox Conferencing Management component versions 3.x before 3.17
Description: A vulnerability was discovered in the Management component of Avaya Equinox Conferencing that could potentially allow an unauthenticated, remote attacker to gain access to screen sharing and whiteboard sessions.
Recommendations: For versions 3.x before 3.17, update to version 3.17 or later to resolve the issue.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2020-7038

Affected Products

Avaya Equinox Conferencing