Vulnerability Details CVE-2018-6635
                System Manager in Avaya Aura before 7.1.2 does not properly use SSL in conjunction with authentication, which allows remote attackers to bypass intended Remote Method Invocation (RMI) restrictions, aka SMGR-26896.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.015
                        
                    
                    
                        
                            EPSS Ranking 80.4%
                        
                    
                 
                
                    CVSS Severity
                    
                        
                            CVSS v3 Score 7.5
                        
                    
                    
                        
                            CVSS v2 Score 6.0
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2018-6635
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura:7.0.0.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura:7.0.0.1
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                
 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura:7.1.0.1
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura:7.1.1