Vulnerabilities > Avaya > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-08-06 CVE-2004-0215 Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header.
network
low complexity
avaya microsoft
5.0
2004-07-27 CVE-2004-0595 The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restricting input to allowed tags, which allows dangerous tags to be processed by web browsers such as Internet Explorer and Safari, which ignore null characters and facilitate the exploitation of cross-site scripting (XSS) vulnerabilities. 6.8
2002-04-22 CVE-2002-0176 Unspecified vulnerability in Avaya Libsafe
The printf wrappers in libsafe 2.0-11 and earlier do not properly handle argument indexing specifiers, which could allow attackers to exploit certain function calls through arguments that are not verified by libsafe.
local
low complexity
avaya
4.6
2002-04-22 CVE-2002-0175 Unspecified vulnerability in Avaya Libsafe
libsafe 2.0-11 and earlier allows attackers to bypass protection against format string vulnerabilities via format strings that use the "'" and "I" characters, which are implemented in libc but not libsafe.
local
low complexity
avaya
4.6
2001-12-31 CVE-2001-1494 Link Following vulnerability in multiple products
script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescript log file to any file on the system, then having root execute the script command.
local
low complexity
kernel avaya CWE-59
5.5
2001-08-07 CVE-2001-1261 Denial-Of-Service vulnerability in Avaya Argent Office 2.1
Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing an alternate HoldMusic file.
network
low complexity
avaya
5.0
2001-08-07 CVE-2001-1259 Denial-Of-Service vulnerability in Argent Office
Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no payload.
network
low complexity
avaya
5.0