Vulnerabilities
Vulnerable Software
Avaya:  Security Vulnerabilities
Avaya Cajun switches P880, P882, P580, and P550R 5.2.14 and earlier contain undocumented accounts (1) manuf and (2) diag with default passwords, which allows remote attackers to gain privileges.
CVSS Score
7.5
EPSS Score
0.033
Published
2002-10-28
An undocumented SNMP read/write community string ('NoGaH$@!') in Avaya P330, P130, and M770-ATM Cajun products allows remote attackers to gain administrative privileges.
CVSS Score
7.5
EPSS Score
0.015
Published
2002-07-08
libsafe 2.0-11 and earlier allows attackers to bypass protection against format string vulnerabilities via format strings that use the "'" and "I" characters, which are implemented in libc but not libsafe.
CVSS Score
4.6
EPSS Score
0.005
Published
2002-04-22
The printf wrappers in libsafe 2.0-11 and earlier do not properly handle argument indexing specifiers, which could allow attackers to exploit certain function calls through arguments that are not verified by libsafe.
CVSS Score
4.6
EPSS Score
0.005
Published
2002-04-22
script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescript log file to any file on the system, then having root execute the script command.
CVSS Score
5.5
EPSS Score
0.004
Published
2001-12-31
Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no payload.
CVSS Score
5.0
EPSS Score
0.024
Published
2001-08-07
Avaya Argent Office uses weak encryption (trivial encoding) for passwords, which allows remote attackers to gain administrator privileges by sniffing and decrypting the sniffing the passwords during a system reboot.
CVSS Score
10.0
EPSS Score
0.018
Published
2001-08-07
Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing an alternate HoldMusic file.
CVSS Score
5.0
EPSS Score
0.012
Published
2001-08-07
Avaya Argent Office 2.1 compares a user-provided SNMP community string with the correct string only up to the length of the user-provided string, which allows remote attackers to bypass authentication with a 0 length community string.
CVSS Score
7.5
EPSS Score
0.016
Published
2001-08-07


Contact Us

Shodan ® - All rights reserved