CVE-2018-15617

MEDIUM

Avaya Aura Communication Manager - Resource Management Error

Title source: rule

Description

A vulnerability in the "capro" (Call Processor) process component of Avaya Aura Communication Manager could allow a remote, unauthenticated user to cause denial of service. Affected versions include 6.3.x, all 7.x versions prior to 7.1.3.2, and all 8.x versions prior to 8.0.1.

Scores

CVSS v3 6.5
EPSS 0.0037
EPSS Percentile 58.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-399
Status published

Affected Products (1)

avaya/aura_communication_manager < 6.3.17.0

Timeline

Published Feb 01, 2019
Tracked Since Feb 18, 2026