Avaya IP Office Contact Center is prone to a remote buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code within the context of the user. Failed attempts will likely cause a denial-of-service condition.
Avaya IP Office (IPO) versions 9.1.0 through 10.1 are vulnerable.
Information
Avaya IP Office Contact Center 10.1
Avaya IP Office Contact Center 10.0
Exploit
The following exploit code is available: