Avaya Aura Application Server 5300 vulnerabilities
2 known vulnerabilities affecting avaya/aura_application_server_5300.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1
Vulnerabilities
Page 1 of 1
CVE-2016-5285HIGHCVSS 7.5v3.02019-11-15
CVE-2016-5285 [HIGH] CWE-476 CVE-2016-5285: A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missin
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.
nvd
CVE-2011-5096CRITICALCVSS 10.0v1.0v2.02012-07-03
CVE-2011-5096 [CRITICAL] CWE-119 CVE-2011-5096: Stack-based buffer overflow in cstore.exe in the Media Application Server (MAS) in Avaya Aura Applic
Stack-based buffer overflow in cstore.exe in the Media Application Server (MAS) in Avaya Aura Application Server 5300 (formerly Nortel Media Application Server) 1.x before 1.0.2 and 2.0 before Patch Bundle 10 allows remote attackers to execute arbitrary code via a crafted cs_anams parameter in a CONTENT_STORE_ADMIN_REQ packet.
nvd