GHSA-hq7j-vpf8-c785
GitHub Security Advisory
⚠ Unreviewed
CRITICAL
Has CVE
Advisory Details
An OS command injection vulnerability was found in the Avaya Aura Device Services Web application which could allow remote code execution as the Web server user via a malicious uploaded file. This issue affects Avaya Aura Device Services version 8.1.4.0 and earlier.
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: November 25, 2025 6:29 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.