Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Avaya Modular Messaging 2.x
This vulnerability report for Avaya Modular Messaging 2.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Avaya Modular Messaging 2.x then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Avaya

Product Link View Here (Link to external site)

Affected By 103 Secunia advisories
255 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 73% (75 of 103 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Avaya Modular Messaging 2.x, with all vendor patches applied, is rated Highly critical .




36 Secunia Advisories in 2006
Secunia has issued a total of 36 Secunia advisories in 2006 for Avaya Modular Messaging 2.x. Currently, 75% (27 out of 36) are marked as unpatched with the most severe being rated Highly critical

More information about the specific Secunia advisories affecting Avaya Modular Messaging 2.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Avaya Products PHP Buffer Overflows
Unpatched. Secunia Advisory 1 of 36 in 2006. 6,332 views.
Release Date:
2006-11-10
Secunia Advisory ID:
SA22779
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products XFree86 Integer Overflow Vulnerabilities
Partial Fix. Secunia Advisory 2 of 36 in 2006. 6,438 views.
Release Date:
2006-10-24
Secunia Advisory ID:
SA22560
Solution Status:
Partial Fix
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged some vulnerabilities in XFree86 included in various Avaya products, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products PHP "_ecalloc" Integer Overflow Vulnerability
Unpatched. Secunia Advisory 3 of 36 in 2006. 5,959 views.
Release Date:
2006-10-23
Secunia Advisory ID:
SA22533
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in PHP included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Partial Fix. Secunia Advisory 4 of 36 in 2006. 7,124 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22440
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct cross-site scripting and HTTP response splitting attacks, cause a DoS (Denial of Service), and potentially compromise a vulnerable system. [Read More]


Avaya Products gzip Multiple Vulnerabilities
Unpatched. Secunia Advisory 5 of 36 in 2006. 6,420 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22435
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in gzip included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products OpenSSL Multiple Vulnerabilities
Unpatched. Secunia Advisory 6 of 36 in 2006. 7,842 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22385
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in OpenSSL included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Avaya Python "repr()" Unicode String Buffer Overflow Vulnerability
Unpatched. Secunia Advisory 7 of 36 in 2006. 6,155 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22379
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in Python included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products ncompress Buffer Overflow Vulnerability
Partial Fix. Secunia Advisory 8 of 36 in 2006. 5,309 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22377
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in ncompress included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya Products OpenSSH Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 9 of 36 in 2006. 7,119 views.
Release Date:
2006-10-11
Secunia Advisory ID:
SA22362
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in OpenSSH included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Kerberos V5 setuid Security Issue
Unpatched. Secunia Advisory 10 of 36 in 2006. 6,069 views.
Release Date:
2006-10-06
Secunia Advisory ID:
SA22291
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a security issue in various products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Modular Messaging X11 libXfont Integer Overflows
Unpatched. Secunia Advisory 11 of 36 in 2006. 6,251 views.
Release Date:
2006-09-28
Secunia Advisory ID:
SA22141
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged some vulnerabilities in Avaya Modular Messaging, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products Apache "Expect" Header Cross-Site Scripting
Unpatched. Secunia Advisory 12 of 36 in 2006. 6,623 views.
Release Date:
2006-09-19
Secunia Advisory ID:
SA21986
Solution Status:
Unpatched
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Avaya Modular Messaging Linux Kernel "prctl" Privilege Escalation
Vendor Patch. Secunia Advisory 13 of 36 in 2006. 6,500 views.
Release Date:
2006-09-18
Secunia Advisory ID:
SA21966
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in the Linux Kernel included in Avaya Modular Messaging, which can be exploited by malicious, local users to bypass certain security restrictions or potentially gain escalated privileges. [Read More]


Avaya Products OpenSSL Vulnerability
Unpatched. Secunia Advisory 14 of 36 in 2006. 7,156 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21870
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in OpenSSL included in various Avaya products, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]


Avaya Products XFree86 Vulnerability
Unpatched. Secunia Advisory 15 of 36 in 2006. 6,482 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21836
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in XFree86 included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Unpatched. Secunia Advisory 16 of 36 in 2006. 8,470 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21723
Solution Status:
Unpatched
Criticality:
Impact:
Unknown
Security Bypass
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to potentially to compromise a vulnerable system. [Read More]


Avaya Products OpenSSH Shell Command Injection and Security Bypass
Unpatched. Secunia Advisory 17 of 36 in 2006. 9,187 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21724
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Privilege escalation
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability and a weakness in OpenSSH included in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges and by malicious users to bypass certain security restrictions. [Read More]


Avaya Products FreeType Vulnerabilities
Partial Fix. Secunia Advisory 18 of 36 in 2006. 8,243 views.
Release Date:
2006-08-31
Secunia Advisory ID:
SA21701
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in FreeType included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise applications using the library. [Read More]


Avaya Products libTIFF Multiple Vulnerabilities
Unpatched. Secunia Advisory 19 of 36 in 2006. 7,241 views.
Release Date:
2006-08-17
Secunia Advisory ID:
SA21501
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products Multiple Vulnerabilities
Unpatched. Secunia Advisory 20 of 36 in 2006. 6,856 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21520
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the dump, openldap, and nss_ldap packages included in various Avaya products, which can be exploited by malicious, local users to cause a DoS (Denial of Service), and by malicious people to gain knowledge of sensitive information or bypass certain security restrictions. [Read More]


Avaya Products OpenSSH scp Shell Command Injection
Unpatched. Secunia Advisory 21 of 36 in 2006. 7,046 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21492
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a weakness in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products Integer Overflow and Denial of Service
Unpatched. Secunia Advisory 22 of 36 in 2006. 7,130 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21522
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged two vulnerabilities in the python and gnupg packages included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a vulnerable system. [Read More]


Avaya Products PostgreSQL Multiple Vulnerabilities
Unpatched. Secunia Advisory 23 of 36 in 2006. 7,052 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20653
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Manipulation of data
Where:
From remote
Short Description:
Avaya has acknowledged two vulnerabilities and a weakness in various Avaya products, which potentially can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct SQL injection attacks. [Read More]


Avaya Products vixie-cron Exposure of Arbitrary Cron Files
Unpatched. Secunia Advisory 24 of 36 in 2006. 6,774 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20666
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious, local users to read arbitrary cron files. [Read More]


Avaya Products LibTIFF Multiple Vulnerabilities
Unpatched. Secunia Advisory 25 of 36 in 2006. 6,554 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20667
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya Products XScreenSaver Insecure Temporary File Creation Vulnerability
Unpatched. Secunia Advisory 26 of 36 in 2006. 6,643 views.
Release Date:
2006-06-06
Secunia Advisory ID:
SA20456
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products "tar" Directory Traversal Vulnerability
Unpatched. Secunia Advisory 27 of 36 in 2006. 6,023 views.
Release Date:
2006-06-01
Secunia Advisory ID:
SA20397
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause files to be extracted to arbitrary locations on a user's system. [Read More]


Avaya Products Sendmail Signal Handling Memory Corruption
Unpatched. Secunia Advisory 28 of 36 in 2006. 8,734 views.
Release Date:
2006-03-27
Secunia Advisory ID:
SA19404
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products WMF Image Parsing Vulnerability
Vendor Patch. Secunia Advisory 29 of 36 in 2006. 8,124 views.
Release Date:
2006-02-16
Secunia Advisory ID:
SA18912
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a user's system. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Unpatched. Secunia Advisory 30 of 36 in 2006. 8,077 views.
Release Date:
2006-02-01
Secunia Advisory ID:
SA18669
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Cross Site Scripting
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious people to conduct cross-site scripting attacks and bypass certain security restrictions. [Read More]


Avaya gdb Integer Overflow and Insecure Initialisation File Handling
Unpatched. Secunia Advisory 31 of 36 in 2006. 6,660 views.
Release Date:
2006-01-18
Secunia Advisory ID:
SA18506
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged two vulnerabilities in various products, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products xloadimage NIFF Image Handling Buffer Overflow
Unpatched. Secunia Advisory 32 of 36 in 2006. 6,960 views.
Release Date:
2006-01-17
Secunia Advisory ID:
SA18491
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Avaya Products util-linux / mount Security Issue and Vulnerability
Unpatched. Secunia Advisory 33 of 36 in 2006. 7,804 views.
Release Date:
2006-01-17
Secunia Advisory ID:
SA18502
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a security issue and a vulnerability in various products, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products Microsoft Windows Embedded Web Fonts Code Execution
Vendor Patch. Secunia Advisory 34 of 36 in 2006. 8,310 views.
Release Date:
2006-01-11
Secunia Advisory ID:
SA18391
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products Microsoft Windows WMF "SETABORTPROC" Vulnerability
Vendor Patch. Secunia Advisory 35 of 36 in 2006. 10,648 views.
Release Date:
2006-01-09
Secunia Advisory ID:
SA18364
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products OpenSSL SSL/TLS Handshake Denial of Service
Unpatched. Secunia Advisory 36 of 36 in 2006. 7,343 views.
Release Date:
2006-01-02
Secunia Advisory ID:
SA18247
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]