Stored XSS injection vulnerabilities were discovered in the Avaya Aura Experience Portal Web management which could allow an authenticated user to potentially disclose sensitive information. Affected versions include 7.0 through 7.2.3 (without hotfix) and 8.0.0 (without hotfix).
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-12548 | Stored XSS injection vulnerabilities were discovered in the Avaya Aura Experience Portal Web management which could allow an authenticated user to potentially disclose sensitive information. Affected versions include 7.0 through 7.2.3 (without hotfix) and 8.0.0 (without hotfix). |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://downloads.avaya.com/css/P8/documents/101076234 |
|
History
No history.
Status: PUBLISHED
Assigner: avaya
Published:
Updated: 2024-08-03T20:11:28.258Z
Reserved: 2021-01-21T00:00:00
Link: CVE-2021-25656
No data.
Status : Modified
Published: 2021-06-24T09:15:11.063
Modified: 2024-11-21T05:55:13.900
Link: CVE-2021-25656
No data.
OpenCVE Enrichment
No data.
EUVD