VulnerabilityModified
CVE-2008-5710
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1.x, 4.0.3, and 5.x allow remote attackers to read (1) configuration files, (2) log files, (3) binary image files, and (4) help files via unknown…
MEDIUM 5.0EPSS 1.44%
Does this matter?
Lower severity and a low EPSS score (1.44%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1.x, 4.0.3, and 5.x allow remote attackers to read (1) configuration files, (2) log files, (3) binary image files, and (4) help files via unknown vectors.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.44% probability · 72th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-16
- Affected
- avaya/communication manager
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/32035Vendor Advisory
- http://support.avaya.com/elmodocs2/security/ASA-2008-394.htmVendor Advisory
- http://www.securityfocus.com/bid/31639
- http://www.voipshield.com/research-details.php?id=123
- http://www.vupen.com/english/advisories/2008/2774
- https://exchange.xforce.ibmcloud.com/vulnerabilities/45750
- http://secunia.com/advisories/32035Vendor Advisory
- http://support.avaya.com/elmodocs2/security/ASA-2008-394.htmVendor Advisory
- http://www.securityfocus.com/bid/31639
- http://www.voipshield.com/research-details.php?id=123
- http://www.vupen.com/english/advisories/2008/2774
- https://exchange.xforce.ibmcloud.com/vulnerabilities/45750
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.