Vulnerabilities (CVE)

Filtered by vendor Avaya Subscribe
Filtered by product Aura Utility Services
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-25650 1 Avaya 1 Aura Utility Services 2022-04-26 4.6 MEDIUM 8.8 HIGH
** UNSUPPORTED WHEN ASSIGNED ** A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local user to execute specially crafted scripts as a privileged user. Affects all 7.x versions of Avaya Aura Utility Services.
CVE-2021-25651 1 Avaya 1 Aura Utility Services 2021-06-29 4.6 MEDIUM 7.8 HIGH
** UNSUPPORTED WHEN ASSIGNED ** A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local user to escalate privileges. Affects all 7.x versions of Avaya Aura Utility Services.
CVE-2016-5285 5 Avaya, Debian, Mozilla and 2 more 32 Aura Application Enablement Services, Aura Application Server 5300, Aura Communication Manager and 29 more 2020-01-09 5.0 MEDIUM 7.5 HIGH
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.