Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Avaya Modular Messaging 3.x
This vulnerability report for Avaya Modular Messaging 3.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Avaya Modular Messaging 3.x then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Avaya

Product Link View Here (Link to external site)

Affected By 113 Secunia advisories
306 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 84% (95 of 113 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Avaya Modular Messaging 3.x, with all vendor patches applied, is rated Highly critical .




34 Secunia Advisories in 2006
Secunia has issued a total of 34 Secunia advisories in 2006 for Avaya Modular Messaging 3.x. Currently, 79% (27 out of 34) are marked as unpatched with the most severe being rated Highly critical

More information about the specific Secunia advisories affecting Avaya Modular Messaging 3.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Avaya Messaging Storage Server Firefox Multiple Vulnerabilities
Unpatched. Secunia Advisory 1 of 34 in 2006. 8,892 views.
Release Date:
2006-11-17
Secunia Advisory ID:
SA22965
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Firefox, included in Avaya Messaging Storage Server, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, or potentially to compromise a vulnerable system. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 2 of 34 in 2006. 8,210 views.
Release Date:
2006-11-17
Secunia Advisory ID:
SA22945
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, expose potentially sensitive information, or to cause a DoS (Denial of Service), and by malicious people to cause a DoS. [Read More]


Avaya Products PHP Buffer Overflows
Unpatched. Secunia Advisory 3 of 34 in 2006. 6,330 views.
Release Date:
2006-11-10
Secunia Advisory ID:
SA22779
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products PHP Multiple Vulnerabilites
Partial Fix. Secunia Advisory 4 of 34 in 2006. 6,686 views.
Release Date:
2006-10-23
Secunia Advisory ID:
SA22538
Solution Status:
Partial Fix
Criticality:
Impact:
Unknown
Security Bypass
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, where some have unknown impacts, and others can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products PHP "_ecalloc" Integer Overflow Vulnerability
Unpatched. Secunia Advisory 5 of 34 in 2006. 5,952 views.
Release Date:
2006-10-23
Secunia Advisory ID:
SA22533
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in PHP included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Firefox Multiple Vulnerabilities
Unpatched. Secunia Advisory 6 of 34 in 2006. 7,905 views.
Release Date:
2006-10-17
Secunia Advisory ID:
SA22422
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Cross Site Scripting
Spoofing
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in Firefox included in various Avaya products, which can be exploited by malicious people to conduct man-in-the-middle, spoofing, and cross-site scripting attacks, and potentially compromise a user's system. [Read More]


Avaya Products gzip Multiple Vulnerabilities
Unpatched. Secunia Advisory 7 of 34 in 2006. 6,413 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22435
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in gzip included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Linux Kernel Multiple Vulnerabilities
Unpatched. Secunia Advisory 8 of 34 in 2006. 6,421 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22417
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the Linux Kernel included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, gain knowledge of potentially sensitive information, or cause a DoS (Denial of Service), and by malicious people to bypass certain security restrictions or cause a DoS. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Partial Fix. Secunia Advisory 9 of 34 in 2006. 7,117 views.
Release Date:
2006-10-16
Secunia Advisory ID:
SA22440
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct cross-site scripting and HTTP response splitting attacks, cause a DoS (Denial of Service), and potentially compromise a vulnerable system. [Read More]


Avaya Products OpenSSL Multiple Vulnerabilities
Unpatched. Secunia Advisory 10 of 34 in 2006. 7,833 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22385
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in OpenSSL included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Avaya Python "repr()" Unicode String Buffer Overflow Vulnerability
Unpatched. Secunia Advisory 11 of 34 in 2006. 6,146 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22379
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in Python included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products ncompress Buffer Overflow Vulnerability
Partial Fix. Secunia Advisory 12 of 34 in 2006. 5,306 views.
Release Date:
2006-10-13
Secunia Advisory ID:
SA22377
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in ncompress included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya Products OpenSSH Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 34 in 2006. 7,102 views.
Release Date:
2006-10-11
Secunia Advisory ID:
SA22362
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in OpenSSH included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Avaya Products Kerberos V5 setuid Security Issue
Unpatched. Secunia Advisory 14 of 34 in 2006. 6,065 views.
Release Date:
2006-10-06
Secunia Advisory ID:
SA22291
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a security issue in various products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Modular Messaging X11 libXfont Integer Overflows
Unpatched. Secunia Advisory 15 of 34 in 2006. 6,247 views.
Release Date:
2006-09-28
Secunia Advisory ID:
SA22141
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged some vulnerabilities in Avaya Modular Messaging, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products Apache "Expect" Header Cross-Site Scripting
Unpatched. Secunia Advisory 16 of 34 in 2006. 6,614 views.
Release Date:
2006-09-19
Secunia Advisory ID:
SA21986
Solution Status:
Unpatched
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Avaya Modular Messaging Linux Kernel "prctl" Privilege Escalation
Vendor Patch. Secunia Advisory 17 of 34 in 2006. 6,497 views.
Release Date:
2006-09-18
Secunia Advisory ID:
SA21966
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in the Linux Kernel included in Avaya Modular Messaging, which can be exploited by malicious, local users to bypass certain security restrictions or potentially gain escalated privileges. [Read More]


Avaya Products OpenSSL Vulnerability
Unpatched. Secunia Advisory 18 of 34 in 2006. 7,151 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21870
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in OpenSSL included in various Avaya products, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]


Avaya Products OpenSSH Shell Command Injection and Security Bypass
Unpatched. Secunia Advisory 19 of 34 in 2006. 9,176 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21724
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Privilege escalation
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability and a weakness in OpenSSH included in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges and by malicious users to bypass certain security restrictions. [Read More]


Avaya Products PHP Multiple Vulnerabilities
Unpatched. Secunia Advisory 20 of 34 in 2006. 8,465 views.
Release Date:
2006-09-01
Secunia Advisory ID:
SA21723
Solution Status:
Unpatched
Criticality:
Impact:
Unknown
Security Bypass
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in PHP included in various Avaya products, which can be exploited by malicious, local users to bypass certain security restrictions and by malicious people to potentially to compromise a vulnerable system. [Read More]


Avaya Products Vixie Cron Security Issue
Unpatched. Secunia Advisory 21 of 34 in 2006. 7,384 views.
Release Date:
2006-08-31
Secunia Advisory ID:
SA21702
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a security issue in Vixie Cron included in an Avaya product, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products FreeType Vulnerabilities
Partial Fix. Secunia Advisory 22 of 34 in 2006. 8,236 views.
Release Date:
2006-08-31
Secunia Advisory ID:
SA21701
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in FreeType included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise applications using the library. [Read More]


Avaya Products Perl "PERLIO_DEBUG" Privilege Escalation
Unpatched. Secunia Advisory 23 of 34 in 2006. 8,979 views.
Release Date:
2006-08-28
Secunia Advisory ID:
SA21646
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged some vulnerabilities in perl included in Avaya products, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Avaya Products libTIFF Multiple Vulnerabilities
Unpatched. Secunia Advisory 24 of 34 in 2006. 7,236 views.
Release Date:
2006-08-17
Secunia Advisory ID:
SA21501
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Avaya Products Multiple Vulnerabilities
Unpatched. Secunia Advisory 25 of 34 in 2006. 6,851 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21520
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
DoS
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in the dump, openldap, and nss_ldap packages included in various Avaya products, which can be exploited by malicious, local users to cause a DoS (Denial of Service), and by malicious people to gain knowledge of sensitive information or bypass certain security restrictions. [Read More]


Avaya Products OpenSSH scp Shell Command Injection
Unpatched. Secunia Advisory 26 of 34 in 2006. 7,038 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21492
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a weakness in various Avaya products, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products Integer Overflow and Denial of Service
Unpatched. Secunia Advisory 27 of 34 in 2006. 7,122 views.
Release Date:
2006-08-16
Secunia Advisory ID:
SA21522
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged two vulnerabilities in the python and gnupg packages included in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a vulnerable system. [Read More]


Avaya Products vixie-cron Exposure of Arbitrary Cron Files
Unpatched. Secunia Advisory 28 of 34 in 2006. 6,768 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20666
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious, local users to read arbitrary cron files. [Read More]


Avaya Products LibTIFF Multiple Vulnerabilities
Unpatched. Secunia Advisory 29 of 34 in 2006. 6,545 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20667
Solution Status:
Unpatched
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Avaya Products PostgreSQL Multiple Vulnerabilities
Unpatched. Secunia Advisory 30 of 34 in 2006. 7,047 views.
Release Date:
2006-06-14
Secunia Advisory ID:
SA20653
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Manipulation of data
Where:
From remote
Short Description:
Avaya has acknowledged two vulnerabilities and a weakness in various Avaya products, which potentially can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct SQL injection attacks. [Read More]


Avaya Products XScreenSaver Insecure Temporary File Creation Vulnerability
Unpatched. Secunia Advisory 31 of 34 in 2006. 6,640 views.
Release Date:
2006-06-06
Secunia Advisory ID:
SA20456
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]


Avaya Products "tar" Directory Traversal Vulnerability
Unpatched. Secunia Advisory 32 of 34 in 2006. 6,019 views.
Release Date:
2006-06-01
Secunia Advisory ID:
SA20397
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause files to be extracted to arbitrary locations on a user's system. [Read More]


Avaya Products Sendmail Signal Handling Memory Corruption
Unpatched. Secunia Advisory 33 of 34 in 2006. 8,728 views.
Release Date:
2006-03-27
Secunia Advisory ID:
SA19404
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Avaya Modular Messaging Windows Privilege Escalation Security Issues
Vendor Patch. Secunia Advisory 34 of 34 in 2006. 8,759 views.
Release Date:
2006-03-15
Secunia Advisory ID:
SA19238
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Avaya has acknowledged some security issues in Avaya Modular Messaging, which can be exploited by malicious, local users to gain escalated privileges. [Read More]