Security Advisory

CVE-2024-4196

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-06-25 04:00:30
Last updated 2025-10-01 01:32:20
Assigner avaya
State PUBLISHED

Description

An improper input validation vulnerability was discovered in Avaya IP Office that could allow remote command or code execution via a specially crafted web request to the Web Control component. Affected versions include all versions prior to 11.1.3.1.