Medium severity4.4NVD Advisory· Published Jun 24, 2021· Updated Jun 17, 2026
CVE-2021-25655
CVE-2021-25655
Description
A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any untrusted site through a crafted attack. Affected versions include 7.0 through 7.2.3 (without hotfix) and 8.0.0 (without hotfix).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:avaya:aura_experience_portal:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:avaya:aura_experience_portal:*:*:*:*:*:*:*:*range: >=7.0,<=7.2.3
- cpe:2.3:a:avaya:aura_experience_portal:8.0.0:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: 8.0
Patches
Vulnerability mechanics
References
1- downloads.avaya.com/css/P8/documents/101076234nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.