VYPR
Medium severity4.4NVD Advisory· Published Jun 24, 2021· Updated Jun 17, 2026

CVE-2021-25655

CVE-2021-25655

Description

A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any untrusted site through a crafted attack. Affected versions include 7.0 through 7.2.3 (without hotfix) and 8.0.0 (without hotfix).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:avaya:aura_experience_portal:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:avaya:aura_experience_portal:*:*:*:*:*:*:*:*range: >=7.0,<=7.2.3
    • cpe:2.3:a:avaya:aura_experience_portal:8.0.0:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: 8.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.