Remote Command Execution in Avaya SIP Enablement Services
CVE-2008-6709

Currently unrated

Key Information:

Vendor

Avaya

Vendor
CVE Published:
10 April 2009

What is CVE-2008-6709?

An unspecified vulnerability exists in the web management interface of Avaya SIP Enablement Services (SES) versions 3.x and 4.0. This security flaw allows remote authenticated users to execute arbitrary commands on the system. The vulnerability is related to the configuration of parameters used for viewing or restoring local data, which can be exploited through various unknown vectors. Organizations using affected versions should prioritize applying security updates and reviewing configurations to mitigate potential risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.