CVE-2023-31186: Avaya IX Workforce Engagement - User Enumeration - CWE-204: Observable Response Discrepancy
Published May 30, 2023
·Updated
Avaya IX Workforce Engagement v15.2.7.1195 - User Enumeration - Observable Response Discrepancy
Affected Software
1 affected component
Avaya IX Workforce Engagement=15.2.7.1195
Event History
May 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-31186?
The severity of CVE-2023-31186 is medium with a severity value of 5.3.
2
How does CVE-2023-31186 affect Avaya IX Workforce Engagement v15.2.7.1195?
CVE-2023-31186 affects Avaya IX Workforce Engagement v15.2.7.1195 by allowing user enumeration through observable response discrepancy.
3
How can I fix CVE-2023-31186?
To fix CVE-2023-31186, it is recommended to apply the latest security patches or updates provided by Avaya.
4
What is CWE-203?
CWE-203 is a common weakness enumeration category for an Observable Response Discrepancy vulnerability.
5
Where can I find more information about CVE-2023-31186?
More information about CVE-2023-31186 can be found on the official Government of Israel website at https://www.gov.il/en/Departments/faq/cve_advisories