Unspecified vulnerability in the Web administration interface in Avaya Communication Manager 3.1.x before CM 3.1.4 SP2 and 4.0.x before 4.0.3 SP1 allows remote authenticated users to execute arbitrary commands via unknown vectors related to "viewing system logs."
2009-04-10T22:00:00.750
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.0 (HIGH)
AV:N/AC:L/Au:S/C:C/I:C/A:C
8.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | avaya | communication_manager | 3.1 | Yes |
Application | avaya | communication_manager | 3.1.1 | Yes |
Application | avaya | communication_manager | 3.1.2 | Yes |
Application | avaya | communication_manager | 3.1.3 | Yes |
Application | avaya | communication_manager | 3.1.4 | Yes |
Application | avaya | communication_manager | 3.1.4 | Yes |
Application | avaya | communication_manager | 4.0 | Yes |
Application | avaya | communication_manager | 4.0.1 | Yes |
Application | avaya | communication_manager | 4.0.1 | Yes |
Application | avaya | communication_manager | 4.0.1 | Yes |
Application | avaya | communication_manager | 4.0.3 | Yes |