CVE-2012-3811
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 63%
from disclosure to weapon99 days
Published on NVDJul 3
1st PoC+99d
metasploitJun 28
exploitation probability
63%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Unrestricted file upload vulnerability in ImageUpload.ashx in the Wallboard application in Avaya IP Office Customer Call Reporter 7.0 before 7.0.5.8 Q1 2012 Maintenance Release and 8.0 before 8.0.9.13 Q1 2012 Maintenance Release allows remote attackers to execute arbitrary code by uploading an executable file and then accessing it via a direct request.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/21847unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.