Secunia Security Advisory – Avaya has acknowledged some vulnerabilities in Avaya CMS (Call Management System), which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, or to gain escalated privileges.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/63078/sa28693.txt
Source: https://packetstormsecurity.com/files/63078/Secunia-Security-Advisory-28693.html