CVE-2023-31187: Avaya IX Workforce Engagement - CWE-522: Insufficiently Protected Credentials
Published May 30, 2023
·Updated
Avaya IX Workforce Engagement v15.2.7.1195 - CWE-522: Insufficiently Protected Credentials
Affected Software
1 affected component
Avaya IX Workforce Engagement=15.2.7.1195
Event History
May 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Avaya IX Workforce Engagement vulnerability?
The vulnerability ID for this Avaya IX Workforce Engagement vulnerability is CVE-2023-31187.
2
What is the severity level of CVE-2023-31187?
The severity level of CVE-2023-31187 is medium, with a CVSS score of 6.5.
3
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-522.
4
What is the affected software version of this vulnerability?
The affected software version of this vulnerability is Avaya IX Workforce Engagement v15.2.7.1195.
5
How can I fix the insufficiently protected credentials vulnerability in Avaya IX Workforce Engagement v15.2.7.1195?
To fix the insufficiently protected credentials vulnerability in Avaya IX Workforce Engagement v15.2.7.1195, it is recommended to apply the vendor-provided patches or updates as soon as they are available.