Security Advisory

CVE-2024-7480

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-08 16:04:25
Last updated 2025-10-01 01:33:36
Assigner avaya
State PUBLISHED

Description

An Improper access control vulnerability was found in Avaya Aura System Manager which could allow a command-line interface (CLI) user with administrative privileges to read arbitrary files on the system. Affected versions include 10.1.x.x and 10.2.x.x. Versions prior to 10.1 are end of manufacturer support.