CVE-2019-7005: Unauthenticated Information Disclosure Vulnerability in IP Office
A vulnerability was discovered in the web interface component of IP Office that may potentially allow a remote, unauthenticated user with network access to gain sensitive information. Affected versions of IP Office include: 9.x, 10.0 through 10.1.0.7 and 11.0 through 11.0.4.2.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-7005?
CVE-2019-7005 is a vulnerability discovered in the web interface component of IP Office that may potentially allow a remote, unauthenticated user with network access to gain sensitive information.
What versions of IP Office are affected by CVE-2019-7005?
Affected versions of IP Office include 9.x, 10.0 through 10.1.0.7, and 11.0 through 11.0.4.2.
How severe is CVE-2019-7005?
CVE-2019-7005 has a severity rating of 7.5, which is considered high.
How can I fix CVE-2019-7005?
To fix CVE-2019-7005, it is recommended to update IP Office to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2019-7005?
More information about CVE-2019-7005 can be found at the following reference: [link](https://downloads.avaya.com/css/P8/documents/101070158)