10
CVSSv2

CVE-2016-2783

Published: 23/01/2017 Updated: 26/01/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Avaya Fabric Connect Virtual Services Platform (VSP) Operating System Software (VOSS) prior to 4.2.3.0 and 5.x prior to 5.0.1.0 does not properly handle VLAN and I-SIS indexes, which allows remote malicious users to obtain unauthorized access via crafted Ethernet frames.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

avaya vsp operating system software

avaya vsp operating system software 5.0.0.0

Github Repositories

Shortest Path Bridging (SPB-Mac) vulnerability testing scripts. Used in a network pentest to enumerate a new vuln (CVE-2016-2783) in Avaya VOSS Ethernet switches.

spb Shortest Path Bridging vulnerability testing scripts (used to find CVE-2016-2783)