CVE-2019-7007: Avaya Aura Conferencing

High severity, CVSS 8.6. EPSS: 1.7% chance of exploitation in the next 30 days.

A directory traversal vulnerability has been found in the Avaya Equinox Management(iView)versions R9.1.9.0 and earlier. Successful exploitation could potentially allow an unauthenticated attacker to access files that are outside the restricted directory on the remote server.

Affected products

  • Avaya Aura Conferencing: from 9.0, up to and including 9.1.9.0

Published 2020-02-28. Last modified 2026-06-17.