Vulnerability Details CVE-2021-25654
                An arbitrary code execution vulnerability was discovered in Avaya Aura Device Services that may potentially allow a local user to execute specially crafted scripts. Affects 7.0 through 8.1.4.0 versions of Avaya Aura Device Services.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.003
                        
                    
                    
                        
                            EPSS Ranking 52.8%
                        
                    
                 
                
                    CVSS Severity
                    
                        
                            CVSS v3 Score 6.2
                        
                    
                    
                        
                            CVSS v2 Score 4.6
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2021-25654
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura_device_services:7.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura_device_services:7.0.1.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura_device_services:8.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura_device_services:8.0.0.0.268
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura_device_services:8.0.0.1.2
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura_device_services:8.0.1.0.1026
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:avaya:aura_device_services:8.1.4.0