Lucene search

K
cve[email protected]CVE-2007-1491
HistoryMar 16, 2007 - 10:19 p.m.

CVE-2007-1491

2007-03-1622:19:00
web.nvd.nist.gov
25
apache tomcat
avaya
s87xx
s8500
s8300
cm 3.1.3
cve-2007-1491
nvd

5.2 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:L/Au:S/C:P/I:P/A:P

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

21.0%

Apache Tomcat in Avaya S87XX, S8500, and S8300 before CM 3.1.3, and Avaya SES allows connections from external interfaces via port 8009, which exposes it to attacks from outside parties.

Affected configurations

NVD
Node
avayasip_enablement_services
OR
avayas8300Rangecm_3.1.2
OR
avayas8500Rangecm_3.1.2
OR
avayas8700Rangecm_3.1.2

5.2 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:L/Au:S/C:P/I:P/A:P

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

21.0%

Related for CVE-2007-1491