CVE-2008-5709: Input Validation
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1 before 3.1.4 SP2, 4.0 before 4.0.3 SP1, and 5.0 before 5.0 SP3 allow remote authenticated users to execute arbitrary code via unknown attack vectors in the (1) Set Static Routes and (2) Backup History components.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5709?
CVE-2008-5709 is classified as a medium severity vulnerability.
How do I fix CVE-2008-5709?
To mitigate CVE-2008-5709, upgrade Avaya Communication Manager to at least version 3.1.4 SP2, 4.0.3 SP1, or 5.0 SP3.
Which versions of Avaya Communication Manager are affected by CVE-2008-5709?
CVE-2008-5709 affects Avaya Communication Manager versions 3.1.x before 3.1.4 SP2, 4.0.x before 4.0.3 SP1, and 5.0.x before 5.0 SP3.
Can CVE-2008-5709 be exploited remotely?
Yes, CVE-2008-5709 can be exploited by remote authenticated users to execute arbitrary code.
What is the impact of CVE-2008-5709 on system security?
The impact of CVE-2008-5709 includes potential unauthorized execution of arbitrary code, which could compromise the integrity of the system.