← Back

Hdx Video End Points

hdx_video_end_points

Vendor: Polycom • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Polycom
2Hdx Video End Points
Uc Apl
Nov 21, 2024
Jan 28, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote authenticated users to execute arbitrary commands as demonstrated by a ; (semicolon) to the ping command feature.
1Polycom
2Hdx Video End Points
Uc Apl
Nov 21, 2024
Jan 28, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Directory traversal vulnerability in a_getlog.cgi in Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.