CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. Exploitation may require the attacker to be authenticated.
CVE
CVE-2021-25656
Severity
MEDIUM
CVSS
5.3
EPSS
0.34%
Original NVD Description
Stored XSS injection vulnerabilities were discovered in the Avaya Aura Experience Portal Web management which could allow an authenticated user to potentially disclose sensitive information. Affected versions include 7.0 through 7.2.3 (without hotfix) and 8.0.0 (without hotfix).
Related CVEs
Other vulnerabilities affecting the same vendor(s)