Avaya Aura Application Enablement Services vulnerabilities

4 known vulnerabilities affecting avaya/aura_application_enablement_services.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2022-2975MEDIUMCVSS 6.7≥ 8.0.0.0, < 8.1.3.5≥ 10.1.0.0, < 10.1.0.22022-10-06
CVE-2022-2975 [HIGH] CWE-269 CVE-2022-2975: A vulnerability related to weak permissions was detected in Avaya Aura Application Enablement Servic A vulnerability related to weak permissions was detected in Avaya Aura Application Enablement Services web application, allowing an administrative user to modify accounts leading to execution of arbitrary code as the root user. This issue affects Application Enablement Services versions 8.0.0.0 through 8.1.3.4 and 10.1.0.0 through 10.1.0.1. Versions pri
nvd
CVE-2016-5285HIGHCVSS 7.5≥ 6.1, ≤ 6.3.3v7.02019-11-15
CVE-2016-5285 [HIGH] CWE-476 CVE-2016-5285: A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missin A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.
nvd
CVE-2009-3939HIGHCVSS 7.1v5.2v5.2.12009-11-16
CVE-2009-3939 [HIGH] CWE-732 CVE-2009-3939: The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world The poll_mode_io file for the megaraid_sas driver in the Linux kernel 2.6.31.6 and earlier has world-writable permissions, which allows local users to change the I/O mode of the driver by modifying this file.
nvd
CVE-2006-1058MEDIUMCVSS 5.5v4.01v4.12006-04-04
CVE-2006-1058 [MEDIUM] CWE-916 CVE-2006-1058: BusyBox 1.1.1 does not use a salt when generating passwords, which makes it easier for local users t BusyBox 1.1.1 does not use a salt when generating passwords, which makes it easier for local users to guess passwords from a stolen password file using techniques such as rainbow tables.
nvd