9.6
CVSSv3

CVE-2017-11309

Published: 10/11/2017 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 9.6 | Impact Score: 6 | Exploitability Score: 2.8
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the SoftConsole client in Avaya IP Office prior to 10.1.1 allows remote servers to execute arbitrary code via a long response.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

avaya ip office

Exploits

[+] Credits: John Page (aka hyp3rlinx) [+] Website: hyp3rlinxaltervistaorg [+] Source: hyp3rlinxaltervistaorg/advisories/AVAYA-OFFICE-IP-(IPO)-v910-101-SOFT-CONSOLE-REMOTE-BUFFER-OVERFLOW-0DAYtxt [+] ISR: apparitionSec Vendor: ============= wwwavayacom Product: =========== Avaya IP Office (IPO) v910 - 101 ...
Avaya IP Office (IPO) versions 910 through 101 suffer from a soft console remote buffer overflow vulnerability ...