Vulnerability Name:

CVE-2018-15610 (CCN-149755)

Assigned:2018-09-10
Published:2018-09-10
Updated:2019-10-03
Summary:A vulnerability in the one-X Portal component of Avaya IP Office allows an authenticated attacker to read and delete arbitrary files on the system. Affected versions of Avaya IP Office include 9.1 through 9.1 SP12, 10.0 through 10.0 SP7, and 10.1 through 10.1 SP2.
CVSS v3 Severity:8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
7.7 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N)
6.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): High
Availibility (A): None
CVSS v2 Severity:9.0 High (CVSS v2 Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:C/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Complete
Availibility (A): None
Vulnerability Type:CWE-22
Vulnerability Consequences:Obtain Information
References:Source: MITRE
Type: CNA
CVE-2018-15610

Source: CCN
Type: Avaya Security Advisories 101051984
one-X portal security update (CVE-2018-15610)

Source: CONFIRM
Type: Vendor Advisory
https://downloads.avaya.com/css/P8/documents/101051984

Source: XF
Type: UNKNOWN
avaya-cve201815610-file-download(149755)

Source: CCN
Type: Packet Storm Security [09-10-2018]
Avaya one-X 9.x / 10.0.x / 10.1.x Arbitrary File Disclosure / Deletion

Source: MISC
Type: UNKNOWN
https://packetstormsecurity.com/files/149284/Avaya-one-X-9.x-10.0.x-10.1.x-Arbitrary-File-Disclosure-Deletion.html

Vulnerable Configuration:Configuration 1:
  • cpe:/a:avaya:ip_office:9.1:*:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp1:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp10:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp11:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp12:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp2:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp3:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp4:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp5:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp6:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp7:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp8:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:9.1:sp9:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:*:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp1:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp2:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp3:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp4:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp5:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp6:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp7:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.1:*:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.1:sp1:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.1:sp2:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:avaya:one-x:-:*:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:*:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.0:sp7:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.1:*:*:*:*:*:*:*
  • OR cpe:/a:avaya:ip_office:10.1:sp3:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    avaya ip office 9.1
    avaya ip office 9.1 sp1
    avaya ip office 9.1 sp10
    avaya ip office 9.1 sp11
    avaya ip office 9.1 sp12
    avaya ip office 9.1 sp2
    avaya ip office 9.1 sp3
    avaya ip office 9.1 sp4
    avaya ip office 9.1 sp5
    avaya ip office 9.1 sp6
    avaya ip office 9.1 sp7
    avaya ip office 9.1 sp8
    avaya ip office 9.1 sp9
    avaya ip office 10.0
    avaya ip office 10.0 sp1
    avaya ip office 10.0 sp2
    avaya ip office 10.0 sp3
    avaya ip office 10.0 sp4
    avaya ip office 10.0 sp5
    avaya ip office 10.0 sp6
    avaya ip office 10.0 sp7
    avaya ip office 10.1
    avaya ip office 10.1 sp1
    avaya ip office 10.1 sp2
    avaya one-x -
    avaya ip office 10.0
    avaya ip office 10.0 sp7
    avaya ip office 10.1
    avaya ip office 10.1 sp3