cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-3722,https://securityvulnerability.io/vulnerability/CVE-2023-3722,Avaya Aura Device Services Remote Code Execution,An OS command injection vulnerability has been identified in the Avaya Aura Device Services Web application. This flaw could potentially allow an attacker to execute arbitrary commands on the server by exploiting a maliciously crafted file upload. Affected users of Avaya Aura Device Services version 8.1.4.0 and earlier are urged to take immediate action to secure their systems against possible exploitation.,Avaya,Aura Device Services,8.6,HIGH,0.0030300000216811895,false,,false,false,true,2024-11-20T04:40:41.000Z,true,false,false,,2023-07-19T20:15:00.000Z,0 CVE-2021-25654,https://securityvulnerability.io/vulnerability/CVE-2021-25654,Avaya Aura Device Services Arbitrary Code Execution Vulnerability,An arbitrary code execution vulnerability was discovered in Avaya Aura Device Services that may potentially allow a local user to execute specially crafted scripts. Affects 7.0 through 8.1.4.0 versions of Avaya Aura Device Services.,Avaya,Avaya Aura Devices Services,6.2,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2021-06-25T20:15:12.000Z,0