threat
engine
.sh
Back
·
··:··
Home
/
Product
/
avaya aura system manager
Product
avaya aura system manager
9 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2024-7480
>= 10.1 and <= 10.1.2
An Improper access control vulnerability was found in Avaya Aura System Manager which could allow a command-line interface (CLI)
4.2
MEDIUM
CVE-2024-7477
>= 10.1 and <= 10.1.2
A SQL injection vulnerability was found which could allow a command line interface (CLI) user with administrative privileges to ex
6.5
MEDIUM
CVE-2020-7032
>= 7.0 and <= 7.1.3.6
An XML external entity (XXE) vulnerability in Avaya WebLM admin interface allows authenticated users to read arbitrary files or co
6.5
MEDIUM
CVE-2016-5285
>= 6.3 and <= 6.3.18
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithS
7.5
HIGH
CVE-2010-2943
all versions
The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, wh
8.1
HIGH
CVE-2010-2942
all versions
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initializ
5.5
MEDIUM
CVE-2010-2798
all versions
The gfs2_dirent_find_space function in fs/gfs2/dir.c in the Linux kernel before 2.6.35 uses an incorrect size value in calculation
7.8
HIGH
CVE-2010-2492
all versions
Buffer overflow in the ecryptfs_uid_hash macro in fs/ecryptfs/messaging.c in the eCryptfs subsystem in the Linux kernel before 2.6
7.8
HIGH
CVE-2009-3939
all versions
The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which a
7.1
HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin