High severity7.2NVD Advisory· Published Sep 24, 2018· Updated Jun 17, 2026
CVE-2018-15615
CVE-2018-15615
Description
A vulnerability in the Supervisor component of Avaya Call Management System allows local administrative user to extract sensitive information from users connecting to a remote CMS host. Affected versions of CMS Supervisor include R17.0.x and R18.0.x.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:avaya:call_management_system_supervisor:17.0.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:avaya:call_management_system_supervisor:17.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:avaya:call_management_system_supervisor:18.0.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:avaya:call_management_system_supervisor:18.0.2.0:*:*:*:*:*:*:*
- Range: R17.0.x, R18.0.x
- Range: R17.0.x, R18.0.x
- Range: Affected verisons include R17.0.x and R18.0.x
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/105392nvdThird Party AdvisoryVDB Entry
- downloads.avaya.com/css/P8/documents/101052300nvdVendor Advisory
News mentions
0No linked articles in our index yet.