First published: Fri Jun 25 2021(Updated: )
An arbitrary code execution vulnerability was discovered in Avaya Aura Device Services that may potentially allow a local user to execute specially crafted scripts. Affects 7.0 through 8.1.4.0 versions of Avaya Aura Device Services.
Credit: securityalerts@avaya.com
Affected Software | Affected Version | How to fix |
---|---|---|
Avaya Aura Device Services | >=7.0<=8.1.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25654 is an arbitrary code execution vulnerability in Avaya Aura Device Services that allows a local user to execute specially crafted scripts.
CVE-2021-25654 affects versions 7.0 through 8.1.4.0 of Avaya Aura Device Services.
CVE-2021-25654 has a severity score of 7.8, indicating a high severity.
To fix CVE-2021-25654, it is recommended to apply the necessary security patches or updates provided by Avaya.
More information about CVE-2021-25654 can be found on Avaya's support website at https://support.avaya.com/css/P8/documents/101076523.