CVE-2021-25653: Avaya Aura Appliance Virtualization Platform Utilities Privilege Escalation Vulnerability
A privilege escalation vulnerability was discovered in Avaya Aura Appliance Virtualization Platform Utilities (AVPU) that may potentially allow a local user to escalate privileges. Affects 8.0.0.0 through 8.1.3.1 versions of AVPU.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-25653.
What is the title of the vulnerability?
The title of the vulnerability is 'A privilege escalation vulnerability in Avaya Aura Appliance Virtualization Platform Utilities'.
What is the severity of CVE-2021-25653?
The severity of CVE-2021-25653 is high with a CVSS score of 7.8.
What software versions are affected by CVE-2021-25653?
Versions 8.0.0.0 through 8.1.3.1 of Avaya Aura Appliance Virtualization Platform Utilities are affected by CVE-2021-25653.
How can a local user exploit CVE-2021-25653?
CVE-2021-25653 can potentially allow a local user to escalate privileges.
Is there a fix available for CVE-2021-25653?
Please refer to the Avaya support document at [https://support.avaya.com/css/P8/documents/101076479](https://support.avaya.com/css/P8/documents/101076479) for information on available fixes.
What is the CWE ID for CVE-2021-25653?
The CWE ID for CVE-2021-25653 is 250.