CVE-2022-2249: Avaya Aura Communication Manager Privilege Escalation Vulnerabilities
Published Oct 12, 2022
·Updated
Privilege escalation related vulnerabilities were discovered in Avaya Aura Communication Manager that may allow local administrative users to escalate their privileges. This issue affects Communication Manager versions 8.0.0.0 through 8.1.3.3 and 10.1.0.0.
Affected Software
2 affected components
Avaya Aura Communication Manager>=8.0<8.1.3.4
Avaya Aura Communication Manager=10.1.0.0
Event History
Oct 12, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2022-2249.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Privilege escalation related vulnerabilities in Avaya Aura Communication Manager'.
3
What is the severity of CVE-2022-2249?
The severity of CVE-2022-2249 is high, with a severity value of 6.7.
4
Which versions of Avaya Aura Communication Manager are affected by this vulnerability?
This vulnerability affects Communication Manager versions 8.0.0.0 through 8.1.3.3 and 10.1.0.0.
5
How can local administrative users escalate their privileges with this vulnerability?
Local administrative users can escalate their privileges using this vulnerability in Avaya Aura Communication Manager.