Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Avaya S8XXX Media Servers
This vulnerability report for Avaya S8XXX Media Servers contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Avaya S8XXX Media Servers then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Avaya

Product Link View Here (Link to external site)

Affected By 78 Secunia advisories
368 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 67% (52 of 78 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Avaya S8XXX Media Servers, with all vendor patches applied, is rated Highly critical .




78 Secunia Advisories in 2003-2009
Secunia has issued a total of 78 Secunia advisories in 2003-2009 for Avaya S8XXX Media Servers. Currently, 67% (52 out of 78) are marked as unpatched with the most severe being rated Highly critical

More information about the specific Secunia advisories affecting Avaya S8XXX Media Servers can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Avaya Communications Manager Cross-Site Scripting Vulnerability
Vendor Patch. Secunia Advisory 1 of 8 in 2007. 7,569 views.
Release Date:
2007-03-08
Secunia Advisory ID:
SA24397
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
A vulnerability has been reported in Avaya Communications Manager, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Unpatched. Secunia Advisory 2 of 8 in 2007. 8,954 views.
Release Date:
2007-03-07
Secunia Advisory ID:
SA24432
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities and a weakness in various Avaya products, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Unspecified Shell Command Injection
Partial Fix. Secunia Advisory 3 of 8 in 2007. 7,692 views.
Release Date:
2007-03-07
Secunia Advisory ID:
SA24434
Solution Status:
Partial Fix
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in various Avaya products, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Avaya Products Linux Kernel Denial of Service
Unpatched. Secunia Advisory 4 of 8 in 2007. 6,522 views.
Release Date:
2007-02-27
Secunia Advisory ID:
SA24288
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products Kernel Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 5 of 8 in 2007. 7,406 views.
Release Date:
2007-02-19
Secunia Advisory ID:
SA24206
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to disclose potentially sensitive information, gain escalated privileges, or cause a DoS (Denial of Service), and by malicious people to cause a DoS. [Read More]


Avaya Products GnuPG Multiple Vulnerabilities
Unpatched. Secunia Advisory 6 of 8 in 2007. 9,068 views.
Release Date:
2007-02-06
Secunia Advisory ID:
SA24047
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products OpenSSH Privilege Separation Monitor Weakness
Unpatched. Secunia Advisory 7 of 8 in 2007. 7,482 views.
Release Date:
2007-02-05
Secunia Advisory ID:
SA24055
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Avaya has acknowledged a weakness in various Avaya products, which can be exploited by malicious people to bypass certain security restrictions. [Read More]


Avaya Products tar "GNUTYPES_NAMES" Record Type Security Issue
Unpatched. Secunia Advisory 8 of 8 in 2007. 6,450 views.
Release Date:
2007-01-25
Secunia Advisory ID:
SA23911
Solution Status:
Unpatched
Criticality:
Impact:
Manipulation of data
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to overwrite arbitrary files. [Read More]


Avaya S8100 Microsoft Windows File Manifest Privilege Escalation
Vendor Patch. Secunia Advisory 1 of 40 in 2006. 8,776 views.
Release Date:
2006-12-14
Secunia Advisory ID:
SA23348
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in S8100, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products Wireshark Multiple Vulnerabilities
Unpatched. Secunia Advisory 2 of 40 in 2006. 7,736 views.
Release Date:
2006-11-28
Secunia Advisory ID:
SA23096
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Wireshark, included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 3 of 40 in 2006. 7,125 views.
Release Date:
2006-11-23
Secunia Advisory ID:
SA23064
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, to disclose potentially sensitive information, or to cause a DoS (Denial of Service), and by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 4 of 40 in 2006. 8,231 views.
Release Date:
2006-11-17
Secunia Advisory ID:
SA22945
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, expose potentially sensitive information, or to cause a DoS (Denial of Service), and by malicious people to cause a DoS. [Read More]


Avaya Products PHP Buffer Overflows
Unpatched. Secunia Advisory 5 of 40 in 2006. 6,349 views.
Release Date:
2006-11-10
Secunia Advisory ID:
SA22779
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products PHP Multiple Vulnerabilites
Partial Fix. Secunia Advisory 6 of 40 in 2006. 6,707 views.
Release Date:
2006-10-23
Secunia Advisory ID:
SA22538
Solution Status:
Partial Fix
Criticality:
Impact:
Unknown
Security Bypass
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, where some have unknown impacts, and others can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products PHP "_ecalloc" Integer Overflow Vulnerability
Unpatched. Secunia Advisory 7 of 40 in 2006. 5,976 views.
Release Date:
2006-10-23
Secunia Advisory ID:
SA22533
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in PHP included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Partial Fix. Secunia Advisory 8 of 40 in 2006. 7,139 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22440
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct cross-site scripting and HTTP response splitting attacks, cause a DoS (Denial of Service), and potentially compromise a vulnerable system. [Read More]


Avaya Products gzip Multiple Vulnerabilities
Unpatched. Secunia Advisory 9 of 40 in 2006. 6,442 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22435
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in gzip included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 10 of 40 in 2006. 6,441 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22417
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the Linux Kernel included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, gain knowledge of potentially sensitive information, or cause a DoS (Denial of Service), and by malicious people to bypass certain security restrictions or cause a DoS. [Read More]


Avaya Products ncompress Buffer Overflow Vulnerability
Partial Fix. Secunia Advisory 11 of 40 in 2006. 5,329 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22377
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in ncompress included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya Products OpenSSL Multiple Vulnerabilities
Unpatched. Secunia Advisory 12 of 40 in 2006. 7,859 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22385
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in OpenSSL included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Avaya Products Wireshark Multiple Vulnerabilities
Unpatched. Secunia Advisory 13 of 40 in 2006. 7,562 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22378
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Wireshark included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Kerberos V5 setuid Security Issue
Unpatched. Secunia Advisory 14 of 40 in 2006. 6,084 views.
Release Date:
2006-10-06
Secunia Advisory ID:
SA22291
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a security issue in various products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 15 of 40 in 2006. 7,077 views.
Release Date:
2006-09-28
Secunia Advisory ID:
SA22174
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to cause a DoS or gain escalated privileges and by malicious people to cause a DoS. [Read More]


Avaya Products wireshark Vulnerabilities
Unpatched. Secunia Advisory 16 of 40 in 2006. 6,798 views.
Release Date:
2006-09-25
Secunia Advisory ID:
SA22089
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 17 of 40 in 2006. 6,958 views.
Release Date:
2006-09-18
Secunia Advisory ID:
SA21983
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of system information
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the Linux Kernel included in various Avaya products, which can be exploited by malicious, local users to gain knowledge of system or potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service), or by malicious people to cause a DoS. [Read More]


Avaya Products OpenSSL Vulnerability
Unpatched. Secunia Advisory 18 of 40 in 2006. 7,175 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21870
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in OpenSSL included in various Avaya products, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 19 of 40 in 2006. 9,026 views.
Release Date:
2006-09-04
Secunia Advisory ID:
SA21745
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the Linux Kernel included in various Avaya products, which can be exploited by malicious, local users and by malicious people to bypass certain security restrictions and cause a DoS (Denial of Service). [Read More]


Avaya Products elfutils Vulnerability
Unpatched. Secunia Advisory 20 of 40 in 2006. 7,601 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21717
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in elfutils included in various Avaya products, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products OpenSSH Shell Command Injection and Security Bypass
Unpatched. Secunia Advisory 21 of 40 in 2006. 9,203 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21724
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Privilege escalation
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability and a weakness in OpenSSH included in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges and by malicious users to bypass certain security restrictions. [Read More]


Avaya Products FreeType Vulnerabilities
Partial Fix. Secunia Advisory 22 of 40 in 2006. 8,262 views.
Release Date:
2006-08-31
Secunia Advisory ID:
SA21701
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in FreeType included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise applications using the library. [Read More]


Avaya Products GnuPG Denial of Service Vulnerability
Unpatched. Secunia Advisory 23 of 40 in 2006. 6,527 views.
Release Date:
2006-08-21
Secunia Advisory ID:
SA21585
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products PHP Multiple Vulnerabilities
Unpatched. Secunia Advisory 24 of 40 in 2006. 7,564 views.
Release Date:
2006-08-21
Secunia Advisory ID:
SA21564
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system, and by malicious people to conduct cross-site scripting attacks and potentially compromise a vulnerable system. [Read More]


Avaya Products Multiple Vulnerabilities
Unpatched. Secunia Advisory 25 of 40 in 2006. 6,869 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21520
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the dump, openldap, and nss_ldap packages included in various Avaya products, which can be exploited by malicious, local users to cause a DoS (Denial of Service), and by malicious people to gain knowledge of sensitive information or bypass certain security restrictions. [Read More]


Avaya Products OpenSSH scp Shell Command Injection
Unpatched. Secunia Advisory 26 of 40 in 2006. 7,067 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21492
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a weakness in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Partial Fix. Secunia Advisory 27 of 40 in 2006. 8,025 views.
Release Date:
2006-07-06
Secunia Advisory ID:
SA20951
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Cross Site Scripting
Manipulation of data
Exposure of sensitive information
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system, and by malicious people to conduct cross-site scripting attacks, to gain knowledge of potentially sensitive information, and to use PHP as an open mail relay. [Read More]


Avaya Products Ethereal Vulnerabilities
Unpatched. Secunia Advisory 28 of 40 in 2006. 7,803 views.
Release Date:
2006-07-03
Secunia Advisory ID:
SA20944
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in ethereal included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Avaya Products vixie-cron Exposure of Arbitrary Cron Files
Unpatched. Secunia Advisory 29 of 40 in 2006. 6,787 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20666
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious, local users to read arbitrary cron files. [Read More]


Avaya Products PostgreSQL Multiple Vulnerabilities
Unpatched. Secunia Advisory 30 of 40 in 2006. 7,068 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20653
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Manipulation of data
Where:
From remote
Short Description:
Avaya has acknowledged two vulnerabilities and a weakness in various Avaya products, which potentially can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct SQL injection attacks. [Read More]


Avaya Products "tar" Directory Traversal Vulnerability
Unpatched. Secunia Advisory 31 of 40 in 2006. 6,033 views.
Release Date:
2006-06-01
Secunia Advisory ID:
SA20397
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause files to be extracted to arbitrary locations on a user's system. [Read More]


Avaya S87X0/S8500/S8300 Tar PAX Extended Headers Buffer Overflow
Unpatched. Secunia Advisory 32 of 40 in 2006. 7,731 views.
Release Date:
2006-05-10
Secunia Advisory ID:
SA20042
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in Avaya S87X0/S8500/S8300 Media Servers, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) and to compromise a user's system. [Read More]


Avaya Products Sendmail Signal Handling Memory Corruption
Unpatched. Secunia Advisory 33 of 40 in 2006. 8,750 views.
Release Date:
2006-03-27
Secunia Advisory ID:
SA19404
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products WMF Image Parsing Vulnerability
Vendor Patch. Secunia Advisory 34 of 40 in 2006. 8,137 views.
Release Date:
2006-02-16
Secunia Advisory ID:
SA18912
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a user's system. [Read More]


Avaya Products Ethereal Vulnerabilities
Unpatched. Secunia Advisory 35 of 40 in 2006. 8,171 views.
Release Date:
2006-02-16
Secunia Advisory ID:
SA18911
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in ethereal included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya S87XX/S8500/S8300 Lynx "HTrjis()" NNTP Buffer Overflow
Unpatched. Secunia Advisory 36 of 40 in 2006. 8,497 views.
Release Date:
2006-01-25
Secunia Advisory ID:
SA18584
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in Avaya S87XX/S8500/S8300, which can be exploited by malicious people to compromise a user's system. [Read More]


Avaya gdb Integer Overflow and Insecure Initialisation File Handling
Unpatched. Secunia Advisory 37 of 40 in 2006. 6,669 views.
Release Date:
2006-01-18
Secunia Advisory ID:
SA18506
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged two vulnerabilities in various products, which potentially can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products Microsoft Windows Embedded Web Fonts Code Execution
Vendor Patch. Secunia Advisory 38 of 40 in 2006. 8,329 views.
Release Date:
2006-01-11
Secunia Advisory ID:
SA18391
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products Microsoft Windows WMF "SETABORTPROC" Vulnerability
Vendor Patch. Secunia Advisory 39 of 40 in 2006. 10,666 views.
Release Date:
2006-01-09
Secunia Advisory ID:
SA18364
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products OpenSSL SSL/TLS Handshake Denial of Service
Unpatched. Secunia Advisory 40 of 40 in 2006. 7,364 views.
Release Date:
2006-01-02
Secunia Advisory ID:
SA18247
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Products Microsoft Windows Multiple Vulnerabilities
Vendor Workaround. Secunia Advisory 1 of 30 in 2005. 9,075 views.
Release Date:
2005-12-15
Secunia Advisory ID:
SA18064
Solution Status:
Vendor Workaround
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
Privilege escalation
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to view potentially sensitive information, to trick users into downloading and executing arbitrary programs, and to compromise a user's system. [Read More]


Avaya Products Microsoft Windows WMF/EMF Multiple Vulnerabilities
Vendor Workaround. Secunia Advisory 2 of 30 in 2005. 9,288 views.
Release Date:
2005-11-09
Secunia Advisory ID:
SA17461
Solution Status:
Vendor Workaround
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Avaya Multiple Ethereal Vulnerabilities
Unpatched. Secunia Advisory 3 of 30 in 2005. 7,946 views.
Release Date:
2005-10-31
Secunia Advisory ID:
SA17392
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Ethereal included in some products, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Avaya Products BFD Integer Overflow Vulnerability
Vendor Workaround. Secunia Advisory 4 of 30 in 2005. 7,900 views.
Release Date:
2005-10-19
Secunia Advisory ID:
SA17257
Solution Status:
Vendor Workaround
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various products, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Avaya Various Products Multiple Vulnerabilities
Vendor Workaround. Secunia Advisory 5 of 30 in 2005. 10,250 views.
Release Date:
2005-10-12
Secunia Advisory ID:
SA17172
Solution Status:
Vendor Workaround
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious, local users to gain escalated privileges, or by malicious people to cause a DoS (Denial of Service) or compromise a user's system or vulnerable system. [Read More]


Avaya Products "ls" Denial of Service Vulnerabilities
Vendor Workaround. Secunia Advisory 6 of 30 in 2005. 7,427 views.
Release Date:
2005-10-05
Secunia Advisory ID:
SA17069
Solution Status:
Vendor Workaround
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the "ls" program included in some products, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]


Avaya Products cpio Insecure File Creation Vulnerability
Vendor Workaround. Secunia Advisory 7 of 30 in 2005. 7,631 views.
Release Date:
2005-10-05
Secunia Advisory ID:
SA17063
Solution Status:
Vendor Workaround
Criticality:
Impact:
Manipulation of data
Exposure of sensitive information
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in cpio included in some products, which can be exploited by malicious, local users to disclose and manipulate information. [Read More]


Avaya Products httpd/mod_ssl Vulnerabilities
Vendor Workaround. Secunia Advisory 8 of 30 in 2005. 8,508 views.
Release Date:
2005-09-27
Secunia Advisory ID:
SA16956
Solution Status:
Vendor Workaround
Criticality:
Impact:
Security Bypass
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in httpd/mod_ssl included in some products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially bypass certain security restrictions. [Read More]


Avaya Products Vim Modelines Shell Command Execution
Vendor Workaround. Secunia Advisory 9 of 30 in 2005. 6,885 views.
Release Date:
2005-09-01
Secunia Advisory ID:
SA16660
Solution Status:
Vendor Workaround
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in vim included in some products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya OpenSSL "der_chop" Script Insecure Temporary File Creation
Vendor Workaround. Secunia Advisory 10 of 30 in 2005. 7,006 views.
Release Date:
2005-08-31
Secunia Advisory ID:
SA16642
Solution Status:
Vendor Workaround
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in openssl included in some products, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]


Avaya Multiple Ethereal Vulnerabilities
Unpatched. Secunia Advisory 11 of 30 in 2005. 6,664 views.
Release Date:
2005-08-31
Secunia Advisory ID:
SA16644
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Ethereal included in some products, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Avaya Media Servers rsh Directory Traversal Vulnerability
Vendor Patch. Secunia Advisory 12 of 30 in 2005. 7,429 views.
Release Date:
2005-08-31
Secunia Advisory ID:
SA16622
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in rsh included in S8XXX Media Servers, which potentially can be exploited by malicious people to overwrite arbitrary files on a vulnerable system. [Read More]


Avaya gzip Directory Traversal Vulnerability
Unpatched. Secunia Advisory 13 of 30 in 2005. 7,497 views.
Release Date:
2005-08-31
Secunia Advisory ID:
SA16643
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Manipulation of data
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in gzip included in some products, which potentially can be exploited by malicious people to extract files to arbitrary directories on a user's system. [Read More]


Avaya Various Products glibc Vulnerabilities
Vendor Workaround. Secunia Advisory 14 of 30 in 2005. 6,383 views.
Release Date:
2005-07-15
Secunia Advisory ID:
SA16084
Solution Status:
Vendor Workaround
Criticality:
Impact:
Exposure of system information
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged two vulnerabilities in several products, which can be exploited by malicious, local users to gain knowledge of certain system information or conduct certain actions with escalated privileges. [Read More]


Avaya Products Telnet Client Information Disclosure Weakness
Unpatched. Secunia Advisory 15 of 30 in 2005. 7,106 views.
Release Date:
2005-06-21
Secunia Advisory ID:
SA15760
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Where:
From remote
Short Description:
Avaya has acknowledged a weakness in the telnet client included in certain products, which can be exploited by malicious people to gain knowledge of certain system information. [Read More]


Avaya Various Products PHP Vulnerabilities
Unpatched. Secunia Advisory 16 of 30 in 2005. 6,512 views.
Release Date:
2005-06-15
Secunia Advisory ID:
SA15699
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious, local users to access files outside the "open_basedir" root, and by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya tcpdump Denial of Service Vulnerabilities
Unpatched. Secunia Advisory 17 of 30 in 2005. 6,610 views.
Release Date:
2005-06-15
Secunia Advisory ID:
SA15712
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in tcpdump, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Avaya Multiple Ethereal Vulnerabilities
Unpatched. Secunia Advisory 18 of 30 in 2005. 6,679 views.
Release Date:
2005-06-15
Secunia Advisory ID:
SA15714
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Ethereal included in some products, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Avaya Various Products sharutils Vulnerabilities
Vendor Workaround. Secunia Advisory 19 of 30 in 2005. 6,453 views.
Release Date:
2005-06-15
Secunia Advisory ID:
SA15717
Solution Status:
Vendor Workaround
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged some vulnerabilities in sharutils included in various products, which potentially can be exploited by malicious, local users to conduct certain actions on a vulnerable system with escalated privileges. [Read More]


Avaya telnet Two Vulnerabilities
Unpatched. Secunia Advisory 20 of 30 in 2005. 7,318 views.
Release Date:
2005-06-15
Secunia Advisory ID:
SA15715
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged two vulnerabilities in telnet, which can be exploited by malicious people to compromise a user's system. [Read More]


Avaya Various Products Kernel Vulnerabilities
Unpatched. Secunia Advisory 21 of 30 in 2005. 7,683 views.
Release Date:
2005-06-03
Secunia Advisory ID:
SA15587
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
Privilege escalation
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited to disclose information, gain escalated privileges, or cause a DoS (Denial of Service). [Read More]


Avaya Kerberos Telnet Client vulnerabilities
Vendor Patch. Secunia Advisory 22 of 30 in 2005. 6,695 views.
Release Date:
2005-05-02
Secunia Advisory ID:
SA15211
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has issued an update for krb5. This fixes two vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]


Avaya Various Products Multiple Vulnerabilities
Vendor Workaround. Secunia Advisory 23 of 30 in 2005. 7,548 views.
Release Date:
2005-02-11
Secunia Advisory ID:
SA14210
Solution Status:
Vendor Workaround
Criticality:
Impact:
Security Bypass
Cross Site Scripting
Spoofing
Exposure of sensitive information
Privilege escalation
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious, local users to bypass certain security restrictions and gain escalated privileges, and by malicious people to conduct cross-site scripting and phishing attacks, disclose sensitive information, bypass certain security restrictions, and compromise a vulnerable system. [Read More]


Avaya krb5 Two Vulnerabilities
Unpatched. Secunia Advisory 24 of 30 in 2005. 5,950 views.
Release Date:
2005-02-10
Secunia Advisory ID:
SA14201
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
Avaya has acknowledged some vulnerabilities in krb5, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges and by malicious users to potentially compromise a vulnerable system. [Read More]


Avaya Various Products Kernel Vulnerabilities
Unpatched. Secunia Advisory 25 of 30 in 2005. 6,448 views.
Release Date:
2005-02-09
Secunia Advisory ID:
SA14200
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Avaya has acknowledged some vulnerabilities in various products, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges. [Read More]


Avaya Products Multiple Vulnerabilities
Unpatched. Secunia Advisory 26 of 30 in 2005. 7,853 views.
Release Date:
2005-01-26
Secunia Advisory ID:
SA14011
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged multiple vulnerabilities in various products. [Read More]


Avaya Products GD Graphics Library Multiple Vulnerabilities
Unpatched. Secunia Advisory 27 of 30 in 2005. 6,446 views.
Release Date:
2005-01-21
Secunia Advisory ID:
SA13931
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged multiple vulnerabilities in various products, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products ncompress Vulnerability
Unpatched. Secunia Advisory 28 of 30 in 2005. 7,303 views.
Release Date:
2005-01-19
Secunia Advisory ID:
SA13906
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has confirmed an old vulnerability in ncompress, which is included in various products. This can potentially be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Products Multiple Vulnerabilities
Unpatched. Secunia Advisory 29 of 30 in 2005. 8,507 views.
Release Date:
2005-01-17
Secunia Advisory ID:
SA13880
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Spoofing
Privilege escalation
Where:
From remote
Short Description:
Avaya has acknowledged multiple vulnerabilities in various products, which potentially can be exploited to gain unauthorised access to other websites, bypass certain security restrictions, or gain escalated privileges. [Read More]


Avaya Products Multiple Kernel Vulnerabilities
Unpatched. Secunia Advisory 30 of 30 in 2005. 6,401 views.
Release Date:
2005-01-14
Secunia Advisory ID:
SA13834
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
Privilege escalation
DoS
Where:
From local network
Short Description:
Avaya has acknowledged multiple vulnerabilities in various products, which can be exploited to gain knowledge of potentially sensitive information, cause a DoS (Denial of Service), or gain escalated privileges on a vulnerable system. [Read More]