Beveiligingsadvies

CVE-2019-7001

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-04-04 15:56:34
Laatst bijgewerkt 2024-09-16 16:33:39
Toegewezen door avaya
CVSS-score 9.9
Status PUBLISHED

Beschrijving

A SQL injection vulnerability in the WebUI component of IP Office Contact Center could allow an authenticated attacker to retrieve or alter sensitive data related to other users on the system. Affected versions of IP Office Contact Center include all 9.x and 10.x versions prior to 10.1.2.2.2-11201.1908. Unsupported versions not listed here were not evaluated.