Insecure Direct Object Reference vulnerabilities were discovered in the Avaya Aura Experience Portal Manager which may allow partial information disclosure to an authenticated non-privileged user. Affected versions include 8.0.x and 8.1.x, prior to 8.1.2 patch 0402. Versions prior to 8.0 are end of manufacturer support.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://support.avaya.com/css/public/documents/101088063 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: avaya
Published: 2024-01-17T18:34:41.831Z
Updated: 2024-09-03T19:49:39.586Z
Reserved: 2023-12-20T21:44:13.722Z
Link: CVE-2023-7031
Vulnrichment
Updated: 2024-08-02T08:50:07.781Z
NVD
Status : Analyzed
Published: 2024-01-17T19:15:08.293
Modified: 2024-01-25T16:32:53.153
Link: CVE-2023-7031
Redhat
No data.