VulnerabilityModified
CVE-2007-1491
Apache Tomcat in Avaya S87XX, S8500, and S8300 before CM 3.1.3, and Avaya SES allows connections from external interfaces via port 8009, which exposes it to attacks from outside parties.
MEDIUM 5.2EPSS 0.37%
Does this matter?
Lower severity and a low EPSS score (0.37%). Track it; it rarely justifies an emergency change on its own.
Description
Apache Tomcat in Avaya S87XX, S8500, and S8300 before CM 3.1.3, and Avaya SES allows connections from external interfaces via port 8009, which exposes it to attacks from outside parties.
- CVSS 2.0
- 5.2 MEDIUMAV:A/AC:L/Au:S/C:P/I:P/A:P
- EPSS
- 0.37% probability · 30th percentile
- CISA KEV
- Not listed
- Affected
- avaya/sip enablement services · avaya/s8300 · avaya/s8500 · avaya/s8700
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/24434Vendor Advisory
- http://support.avaya.com/elmodocs2/security/ASA-2007-051.htmVendor Advisory
- http://www.osvdb.org/33346
- http://secunia.com/advisories/24434Vendor Advisory
- http://support.avaya.com/elmodocs2/security/ASA-2007-051.htmVendor Advisory
- http://www.osvdb.org/33346
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.