The Web server for Polycom ViewStation before 7.2.4 allows remote attackers to bypass authentication and read files via Unicode encoded requests.
References
Link | Resource |
---|---|
http://www.ciac.org/ciac/bulletins/m-123.shtml | Patch Vendor Advisory |
http://www.iss.net/security_center/static/9348.php | Vendor Advisory |
http://www.securityfocus.com/bid/5632 | Vendor Advisory |
http://www.polycom.com/common/pw_item_show_doc/0,,1444,00.pdf | |
http://bvlive01.iss.net/issEn/delivery/xforce/alertdetail.jsp?oid=21089 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-01-06 21:00
Updated : 2008-09-05 13:28
NVD link : CVE-2002-0627
Mitre link : CVE-2002-0627
JSON object : View
CWE
Products Affected
polycom
- viewstation_v.35
- viewstation_512
- viewstation_128
- viewstation_mp
- viewstation_dcp
- viewstation_fx_vs4000
- viewstation_h.323
- viewstation_sp_384