CVE Published: 23/04/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2020 Source: avaya |
Vendor: Avaya |
Product: Session Border Controller for Enterprise Status : PUBLISHED
CVE-2020-7034 Description
A command injection vulnerability in Avaya Session Border Controller for Enterprise could allow an authenticated, remote attacker to send specially crafted messages and execute arbitrary commands with the affected system privileges. Affected versions of Avaya Session Border Controller for Enterprise include 7.x, 8.0 through 8.1.1.x
Metrics
CVSS Version: 3.1 |
Base Score: 7.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H