avaya aura communication manager Vulnerabilities
CVE security advisories and vulnerability history for aura communication manager by avaya.
Last updated
Overview
avaya aura communication manager has 10 published CVE records since 2009, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 1 have a known public exploit. The average CVSS base score across scored CVEs is 7.5.
This page aggregates every publicly disclosed vulnerability (CVE) affecting avaya aura communication manager, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of avaya aura communication manager's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of avaya aura communication manager's CVEs are currently listed in CISA's KEV catalog.
Public exploits
1
One of avaya aura communication manager's CVEs has a known public exploit available.
Affected versions and CVEs
Browse every avaya aura communication manager version named in a CVE, then pick one to see only the CVEs that affect it.
Version ranges
- 5.2 <= v <= 5.25 CVEs
- 6.3.0.1 <= v <= 6.3.17.02 CVEs
- 10.1.0.0 <= v <= 10.1.0.01 CVE
- 6.0 <= v <= 6.3.117.01 CVE
- 7.0 <= v < 7.1.3.11 CVE
- 7.0 <= v < 7.1.3.21 CVE
- 7.0 <= v <= 7.01 CVE
- 7.0 <= v <= 7.1.3.41 CVE
- 8.0 <= v < 8.0.11 CVE
- 8.0 <= v < 8.1.0.01 CVE
- 8.0 <= v < 8.1.3.41 CVE
Fixed in
- 7.1.3.11 CVE
- 7.1.3.21 CVE
- 8.0.11 CVE
- 8.1.0.01 CVE
- 8.1.3.41 CVE
10 CVEs
- High · CVSS 7.7EPSS 0.2% (10th pct)2022-10-12
- High · CVSS 8.8EPSS 0.4% (36th pct)2020-08-11
- High vulnerability · 2019-11-15CVE-2016-5285PatchHigh · CVSS 7.5EPSS 2.3% (81th pct)2019-11-15
- High · CVSS 7.5EPSS 2.2% (81th pct)2019-02-01
- Medium · CVSS 6.7EPSS 0.3% (22th pct)2018-09-27
- High vulnerability · 2010-09-30CVE-2010-2943Public exploitPatchHigh · CVSS 8.1EPSS 17.0% (97th pct)2010-09-30
- Medium vulnerability · 2010-09-21CVE-2010-2942PatchMedium · CVSS 5.5EPSS 0.4% (35th pct)2010-09-21
- High vulnerability · 2010-09-08CVE-2010-2798PatchHigh · CVSS 7.8EPSS 0.4% (34th pct)2010-09-08
- High vulnerability · 2010-09-08CVE-2010-2492PatchHigh · CVSS 7.8EPSS 0.4% (36th pct)2010-09-08
- High vulnerability · 2009-11-16CVE-2009-3939PatchHigh · CVSS 7.1EPSS 0.4% (36th pct)2009-11-16
Common weakness types
The CWE weakness categories most often found in avaya aura communication manager CVEs. Follow any weakness for its full explanation.
Disclosure activity by year
How many avaya aura communication manager CVEs were published each year.
Other avaya products
Browse vulnerabilities for other products by avaya.
Frequently asked questions
Common questions about avaya aura communication manager vulnerabilities.
- How many CVEs does avaya aura communication manager have?
- avaya aura communication manager has 10 published CVE records since 2009.
- How many avaya aura communication manager CVEs are in CISA KEV?
- None of avaya aura communication manager's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
- Are there public exploits for avaya aura communication manager vulnerabilities?
- Yes — 1 of avaya aura communication manager's CVEs have a known public exploit.
- Which versions of avaya aura communication manager are affected?
- 16 distinct avaya aura communication manager versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
- What are the most common weakness types in avaya aura communication manager CVEs?
- avaya aura communication manager's CVEs most often map to these CWE weakness types: CWE-269 (Improper Privilege Management), CWE-284 (Improper Access Control), CWE-352 (Cross-Site Request Forgery (CSRF)), CWE-399.
- What is the average severity of avaya aura communication manager CVEs?
- The average CVSS base score across avaya aura communication manager's scored CVEs is 7.5.
References
- All avaya vulnerabilities
- The MITRE CVE Program (opens in a new tab)
- Learn: What is a CVE?
- CWE directory: the weakness types these CVEs map to
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Track avaya aura communication manager vulnerabilities
Monitor new avaya aura communication manager vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.