Home/Product/avaya aura system manager
Product

avaya aura system manager

9 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-7480
>= 10.1 and <= 10.1.2
An Improper access control vulnerability was found in Avaya Aura System Manager which could allow a command-line interface (CLI)
4.2MEDIUM
CVE-2024-7477
>= 10.1 and <= 10.1.2
A SQL injection vulnerability was found which could allow a command line interface (CLI) user with administrative privileges to ex
6.5MEDIUM
CVE-2020-7032
>= 7.0 and <= 7.1.3.6
An XML external entity (XXE) vulnerability in Avaya WebLM admin interface allows authenticated users to read arbitrary files or co
6.5MEDIUM
CVE-2016-5285
>= 6.3 and <= 6.3.18
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithS
7.5HIGH
CVE-2010-2943
all versions
The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, wh
8.1HIGH
CVE-2010-2942
all versions
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initializ
5.5MEDIUM
CVE-2010-2798
all versions
The gfs2_dirent_find_space function in fs/gfs2/dir.c in the Linux kernel before 2.6.35 uses an incorrect size value in calculation
7.8HIGH
CVE-2010-2492
all versions
Buffer overflow in the ecryptfs_uid_hash macro in fs/ecryptfs/messaging.c in the eCryptfs subsystem in the Linux kernel before 2.6
7.8HIGH
CVE-2009-3939
all versions
The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which a
7.1HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin