Vulnerability index

Browse CVEs

42 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

4602sw Ip Phone MEDIUM 5.0
CVE-2007-3320

The Avaya 4602SW IP Phone (Model 4602D02A) with 2.2.2 and earlier SIP firmware accepts SIP INVITE requests from arbitrary source IP addresses, which …

Mitigation only
Fix from $1,600 2007-06-21
4602sw Ip Phone MEDIUM 5.0
CVE-2007-3321

The Avaya 4602 SW IP Phone (Model 4602D02A) with 2.2.2 and earlier SIP firmware allows remote attackers to cause a denial of service (device reboot) …

Mitigation only
Fix from $1,600 2007-06-21
4602sw Ip Phone MEDIUM 5.0
CVE-2007-3322

The Avaya 4602 SW IP Phone (Model 4602D02A) with 2.2.2 and earlier SIP firmware uses a constant media port number for calls, which allows remote atta…

Mitigation only
Fix from $1,600 2007-06-21
Sip Enablement Services MEDIUM 5.2
CVE-2007-1491

Apache Tomcat in Avaya S87XX, S8500, and S8300 before CM 3.1.3, and Avaya SES allows connections from external interfaces via port 8009, which expose…

Mitigation only
Fix from $1,600 2007-03-16
Libsafe MEDIUM 5.1
CVE-2005-1125EPSS 7%

Race condition in libsafe 2.0.16 and earlier, when running in multi-threaded applications, allows attackers to bypass libsafe protection and exploit …

No fix yet
Fix from $1,600 2005-05-02
Ip Office Phone Manager MEDIUM 5.0
CVE-2005-0506

The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows lo…

Mitigation only
Fix from $1,600 2005-03-14
Ip600 Media Servers HIGH 10.0
CVE-2004-1050EPSS 67%

Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME…

Mitigation only
Fix from $1,950 2004-12-31
Cajun P550 HIGH 7.5
CVE-2002-1229

Avaya Cajun switches P880, P882, P580, and P550R 5.2.14 and earlier contain undocumented accounts (1) manuf and (2) diag with default passwords, whic…

Mitigation only
Fix from $1,950 2002-10-28
Argent Office HIGH 10.0
CVE-2001-1260

Avaya Argent Office uses weak encryption (trivial encoding) for passwords, which allows remote attackers to gain administrator privileges by sniffing…

No fix yet
Fix from $1,950 2001-08-07
Argent Office HIGH 7.5
CVE-2001-1262

Avaya Argent Office 2.1 compares a user-provided SNMP community string with the correct string only up to the length of the user-provided string, whi…

No fix yet
Fix from $1,950 2001-08-07
Argent Office MEDIUM 5.0
CVE-2001-1259

Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no payload.

No fix yet
Fix from $1,600 2001-08-07
Argent Office MEDIUM 5.0
CVE-2001-1261

Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing …

No fix yet
Fix from $1,600 2001-08-07