CVE-2001-1261: Medium severity Avaya Argent Office vulnerability
Published Aug 7, 2001
·Updated
Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing an alternate HoldMusic file.
Affected Software
1 affected component
Avaya Argent Office=2.1
Event History
Aug 7, 2001
CVE Published
04:00 AM
May 3, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1261?
CVE-2001-1261 has been rated as a medium severity vulnerability due to the potential for unauthorized changes to hold music.
2
How does CVE-2001-1261 exploit remote attacks?
CVE-2001-1261 allows remote attackers to exploit the vulnerability by spoofing a legitimate server's response to a TFTP broadcast.
3
How can I mitigate the risk of CVE-2001-1261?
To mitigate CVE-2001-1261, ensure that appropriate authentication and validation measures are in place for TFTP broadcasts.
4
Which versions of Avaya Argent Office are affected by CVE-2001-1261?
CVE-2001-1261 affects Avaya Argent Office version 2.1.
5
Can CVE-2001-1261 lead to unauthorized access?
Yes, CVE-2001-1261 can lead to unauthorized access by allowing attackers to change the hold music, potentially disrupting service.