CVE-2021-25650: Avaya Aura Utility Services Privilege Escalation Vulnerability
UNSUPPORTED WHEN ASSIGNED A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local user to execute specially crafted scripts as a privileged user. Affects all 7.x versions of Avaya Aura Utility Services.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Avaya Aura Utility Services vulnerability?
The vulnerability ID for this Avaya Aura Utility Services vulnerability is CVE-2021-25650.
What is the severity of CVE-2021-25650?
The severity of CVE-2021-25650 is high with a CVSS score of 8.8.
Which versions of Avaya Aura Utility Services are affected by CVE-2021-25650?
All 7.x versions of Avaya Aura Utility Services are affected by CVE-2021-25650.
What is the impact of CVE-2021-25650?
CVE-2021-25650 can potentially allow a local user to execute specially crafted scripts as a privileged user, resulting in privilege escalation.
Is there a fix available for CVE-2021-25650?
Please refer to the Avaya support website (https://support.avaya.com/css/P8/documents/101072728) for information on available fixes and patches for CVE-2021-25650.