An improper input validation discovered in Avaya Call Management System could allow an unauthorized remote command via a specially crafted web request. Affected versions include 18.x, 19.x prior to 19.2.0.7, and 20.x prior to 20.0.1.0.CreditsRoberto OliveroJuan Ignacio ElolaReferenceshttps://support.avaya.com/css/public/documents/101093084