First published: Wed Apr 28 2021(Updated: )
A vulnerability was discovered in Management component of Avaya Equinox Conferencing that could potentially allow an unauthenticated, remote attacker to gain access to screen sharing and whiteboard sessions. The affected versions of Management component of Avaya Equinox Conferencing include all 3.x versions before 3.17. Avaya Equinox Conferencing is now offered as Avaya Meetings Server.
Credit: securityalerts@avaya.com
Affected Software | Affected Version | How to fix |
---|---|---|
Avaya Equinox Conferencing | >=9.0.0<9.1.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Avaya Equinox Conferencing vulnerability is CVE-2020-7038.
The severity of CVE-2020-7038 is high with a CVSS score of 7.5.
This vulnerability affects the Management component of Avaya Equinox Conferencing, allowing an unauthenticated, remote attacker to gain access to screen sharing and whiteboard sessions.
All versions of the Management component of Avaya Equinox Conferencing 3.x up to and including 9.1.11 are affected by this vulnerability.
Yes, Avaya has released a fix for this vulnerability. Please refer to the Avaya support website for more information.