A command injection vulnerability in Avaya Session Border Controller for Enterprise could allow an authenticated, remote attacker to send specially crafted messages and execute arbitrary commands with the affected system privileges. Affected versions of Avaya Session Border Controller for Enterprise include 7.x, 8.0 through 8.1.1.x
References
Link | Resource |
---|---|
https://downloads.avaya.com/css/P8/documents/101075451 | Broken Link Vendor Advisory |
Configurations
History
No history.
Information
Published : 2021-04-23 21:15
Updated : 2022-08-05 17:13
NVD link : CVE-2020-7034
Mitre link : CVE-2020-7034
JSON object : View
Products Affected
avaya
- session_border_controller_for_enterprise
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')