{"id":8719,"date":"2024-07-01T17:15:36","date_gmt":"2024-07-01T15:15:36","guid":{"rendered":"https:\/\/www.winet.ch\/?p=8719"},"modified":"2024-07-02T08:23:43","modified_gmt":"2024-07-02T06:23:43","slug":"jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks","status":"publish","type":"post","link":"https:\/\/www.winet.ch\/en\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/","title":{"rendered":"Patch Avaya IP Office now due to critical security leaks"},"content":{"rendered":"<div class=\"fusion-fullwidth fullwidth-box fusion-builder-row-1 nonhundred-percent-fullwidth non-hundred-percent-height-scrolling\" style=\"--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-flex-wrap:wrap;\" ><div class=\"fusion-builder-row fusion-row\"><div class=\"fusion-layout-column fusion_builder_column fusion-builder-column-0 fusion_builder_column_1_1 1_1 fusion-one-full fusion-column-first fusion-column-last\" style=\"--awb-bg-size:cover;\"><div class=\"fusion-column-wrapper fusion-column-has-shadow fusion-flex-column-wrapper-legacy\"><div class=\"fusion-text fusion-text-1\" style=\"--awb-text-transform:none;\"><p>There are serious security vulnerabilities in Avaya IP Office. Unauthorized persons can exploit these vulnerabilities in the IP telephony software, which are classified as critical, to inject malicious code. Updates have been released to close these vulnerabilities.<\/p>\n<p>Precisely crafted requests to the web control component of Avaya IP Office could lead to commands being executed or malicious code being injected from the network due to insufficient filtering of input, Avaya warns in a security advisory (CVE-2024-4196, CVSS 10, risk \"critical\"). Attackers can exploit a vulnerability in the One-X component that allows unlimited file uploads - this can also potentially lead to the execution of commands or malicious code from the network, as Avaya explains (CVE-2024-4197, CVSS 9.9, critical).<\/p>\n<h3 class=\"subheading\">Updates available for Avaya<\/h3>\n<p>Avaya IP Office 11.1.3.0 and older versions have security vulnerabilities. Version 11.1.3.1 closes these gaps. In addition to installing the update, Avaya strongly recommends implementing best security practices such as the use of firewalls, access control lists (ACLs), physical security and appropriate access restrictions. This can minimize the impact of the security vulnerabilities. IT managers with Avaya IP Office instances should download and install the updates as soon as possible.<\/p>\n<\/div><div class=\"fusion-clearfix\"><\/div><\/div><\/div><\/div><\/div>","protected":false},"excerpt":{"rendered":"","protected":false},"author":1,"featured_media":8722,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[35],"tags":[54],"class_list":["post-8719","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-aktuelles","tag-aktuelles"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.6 (Yoast SEO v27.6) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks<\/title>\n<meta name=\"description\" content=\"s bestehen schwerwiegende Sicherheitsl\u00fccken in Avaya IP Office. Diese kritische Schwachstellen in der IP-Telefonie-Software ausnutzen\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.winet.ch\/en\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks\" \/>\n<meta property=\"og:description\" content=\"s bestehen schwerwiegende Sicherheitsl\u00fccken in Avaya IP Office. Diese kritische Schwachstellen in der IP-Telefonie-Software ausnutzen\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.winet.ch\/en\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/\" \/>\n<meta property=\"og:site_name\" content=\"Winet\" \/>\n<meta property=\"article:published_time\" content=\"2024-07-01T15:15:36+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-07-02T06:23:43+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.winet.ch\/wp-content\/uploads\/2024\/07\/avaya-telefonanlagen-bedroht.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"611\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"admin\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"admin\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/\"},\"author\":{\"name\":\"admin\",\"@id\":\"https:\\\/\\\/www.winet.ch\\\/#\\\/schema\\\/person\\\/5ab8eb0ebd0d6cdcd9311430a37401d3\"},\"headline\":\"Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks\",\"datePublished\":\"2024-07-01T15:15:36+00:00\",\"dateModified\":\"2024-07-02T06:23:43+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/\"},\"wordCount\":638,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.winet.ch\\\/wp-content\\\/uploads\\\/2024\\\/07\\\/avaya-telefonanlagen-bedroht.png\",\"keywords\":[\"Aktuelles\"],\"articleSection\":[\"Aktuelles\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/\",\"url\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/\",\"name\":\"Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.winet.ch\\\/wp-content\\\/uploads\\\/2024\\\/07\\\/avaya-telefonanlagen-bedroht.png\",\"datePublished\":\"2024-07-01T15:15:36+00:00\",\"dateModified\":\"2024-07-02T06:23:43+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/#\\\/schema\\\/person\\\/5ab8eb0ebd0d6cdcd9311430a37401d3\"},\"description\":\"s bestehen schwerwiegende Sicherheitsl\u00fccken in Avaya IP Office. Diese kritische Schwachstellen in der IP-Telefonie-Software ausnutzen\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.winet.ch\\\/wp-content\\\/uploads\\\/2024\\\/07\\\/avaya-telefonanlagen-bedroht.png\",\"contentUrl\":\"https:\\\/\\\/www.winet.ch\\\/wp-content\\\/uploads\\\/2024\\\/07\\\/avaya-telefonanlagen-bedroht.png\",\"width\":1024,\"height\":611,\"caption\":\"Avaya IP Office 11.1.3.0\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.winet.ch\\\/2024\\\/07\\\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.winet.ch\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.winet.ch\\\/#website\",\"url\":\"https:\\\/\\\/www.winet.ch\\\/\",\"name\":\"Winet\",\"description\":\"The VoIP Professionals.\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.winet.ch\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.winet.ch\\\/#\\\/schema\\\/person\\\/5ab8eb0ebd0d6cdcd9311430a37401d3\",\"name\":\"admin\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/ea801cddd227fee3f00009a14dbb979dd574df9e0fa22c9c4f285022a9fe1104?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/ea801cddd227fee3f00009a14dbb979dd574df9e0fa22c9c4f285022a9fe1104?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/ea801cddd227fee3f00009a14dbb979dd574df9e0fa22c9c4f285022a9fe1104?s=96&d=mm&r=g\",\"caption\":\"admin\"},\"url\":\"https:\\\/\\\/www.winet.ch\\\/en\\\/author\\\/chris_wr762217\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Patch Avaya IP Office now due to critical security leaks","description":"There are serious security vulnerabilities in Avaya IP Office. Exploit these critical vulnerabilities in the IP telephony software","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.winet.ch\/en\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/","og_locale":"en_US","og_type":"article","og_title":"Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks","og_description":"s bestehen schwerwiegende Sicherheitsl\u00fccken in Avaya IP Office. Diese kritische Schwachstellen in der IP-Telefonie-Software ausnutzen","og_url":"https:\/\/www.winet.ch\/en\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/","og_site_name":"Winet","article_published_time":"2024-07-01T15:15:36+00:00","article_modified_time":"2024-07-02T06:23:43+00:00","og_image":[{"width":1024,"height":611,"url":"https:\/\/www.winet.ch\/wp-content\/uploads\/2024\/07\/avaya-telefonanlagen-bedroht.png","type":"image\/png"}],"author":"admin","twitter_card":"summary_large_image","twitter_misc":{"Written by":"admin","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#article","isPartOf":{"@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/"},"author":{"name":"admin","@id":"https:\/\/www.winet.ch\/#\/schema\/person\/5ab8eb0ebd0d6cdcd9311430a37401d3"},"headline":"Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks","datePublished":"2024-07-01T15:15:36+00:00","dateModified":"2024-07-02T06:23:43+00:00","mainEntityOfPage":{"@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/"},"wordCount":638,"commentCount":0,"image":{"@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#primaryimage"},"thumbnailUrl":"https:\/\/www.winet.ch\/wp-content\/uploads\/2024\/07\/avaya-telefonanlagen-bedroht.png","keywords":["Aktuelles"],"articleSection":["Aktuelles"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/","url":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/","name":"Patch Avaya IP Office now due to critical security leaks","isPartOf":{"@id":"https:\/\/www.winet.ch\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#primaryimage"},"image":{"@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#primaryimage"},"thumbnailUrl":"https:\/\/www.winet.ch\/wp-content\/uploads\/2024\/07\/avaya-telefonanlagen-bedroht.png","datePublished":"2024-07-01T15:15:36+00:00","dateModified":"2024-07-02T06:23:43+00:00","author":{"@id":"https:\/\/www.winet.ch\/#\/schema\/person\/5ab8eb0ebd0d6cdcd9311430a37401d3"},"description":"There are serious security vulnerabilities in Avaya IP Office. Exploit these critical vulnerabilities in the IP telephony software","breadcrumb":{"@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#primaryimage","url":"https:\/\/www.winet.ch\/wp-content\/uploads\/2024\/07\/avaya-telefonanlagen-bedroht.png","contentUrl":"https:\/\/www.winet.ch\/wp-content\/uploads\/2024\/07\/avaya-telefonanlagen-bedroht.png","width":1024,"height":611,"caption":"Avaya IP Office 11.1.3.0"},{"@type":"BreadcrumbList","@id":"https:\/\/www.winet.ch\/2024\/07\/jetzt-avaya-ip-office-patchen-wegen-kritischer-sicherheitslecks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.winet.ch\/"},{"@type":"ListItem","position":2,"name":"Jetzt Avaya IP Office patchen wegen kritischer Sicherheitslecks"}]},{"@type":"WebSite","@id":"https:\/\/www.winet.ch\/#website","url":"https:\/\/www.winet.ch\/","name":"Winet","description":"The VoIP Professionals.","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.winet.ch\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.winet.ch\/#\/schema\/person\/5ab8eb0ebd0d6cdcd9311430a37401d3","name":"admin","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/ea801cddd227fee3f00009a14dbb979dd574df9e0fa22c9c4f285022a9fe1104?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/ea801cddd227fee3f00009a14dbb979dd574df9e0fa22c9c4f285022a9fe1104?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/ea801cddd227fee3f00009a14dbb979dd574df9e0fa22c9c4f285022a9fe1104?s=96&d=mm&r=g","caption":"admin"},"url":"https:\/\/www.winet.ch\/en\/author\/chris_wr762217\/"}]}},"_links":{"self":[{"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/posts\/8719","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/comments?post=8719"}],"version-history":[{"count":0,"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/posts\/8719\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/media\/8722"}],"wp:attachment":[{"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/media?parent=8719"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/categories?post=8719"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.winet.ch\/en\/wp-json\/wp\/v2\/tags?post=8719"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}