Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-7485 | A vulnerability in the one-x Portal component of IP Office could allow an authenticated user to perform stored cross site scripting attacks via fields in the Conference Scheduler Service that could affect other application users. Affected versions of IP Office include 10.0 through 10.1 SP3 and 11.0 versions prior to 11.0 SP1. |
| Link | Providers |
|---|---|
| https://downloads.avaya.com/css/P8/documents/101054317 |
|
No history.
Status: PUBLISHED
Assigner: avaya
Published:
Updated: 2024-08-05T10:01:54.170Z
Reserved: 2018-08-21T00:00:00.000Z
Link: CVE-2018-15614
No data.
Status : Modified
Published: 2019-01-23T17:29:00.397
Modified: 2026-06-17T01:42:50.710
Link: CVE-2018-15614
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD