Vulnerability Description
A command injection vulnerability in Avaya Session Border Controller for Enterprise could allow an authenticated, remote attacker to send specially crafted messages and execute arbitrary commands with the affected system privileges. Affected versions of Avaya Session Border Controller for Enterprise include 7.x, 8.0 through 8.1.1.x
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Avaya | Session Border Controller For Enterprise | >= 7.0, < 8.1.2.0 |
Related Weaknesses (CWE)
References
- https://downloads.avaya.com/css/P8/documents/101075451Broken LinkVendor Advisory
- https://downloads.avaya.com/css/P8/documents/101075451Broken LinkVendor Advisory
FAQ
What is CVE-2020-7034?
CVE-2020-7034 is a vulnerability with a CVSS score of 7.2 (HIGH). A command injection vulnerability in Avaya Session Border Controller for Enterprise could allow an authenticated, remote attacker to send specially crafted messages and execute arbitrary commands with...
How severe is CVE-2020-7034?
CVE-2020-7034 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-7034?
Check the references section above for vendor advisories and patch information. Affected products include: Avaya Session Border Controller For Enterprise.