A vulnerability in the web-based management interface of VVX, Trio, SoundStructure, SoundPoint, and SoundStation phones running Polycom UC Software, if exploited, could allow an authenticated, remote attacker with admin privileges to cause a denial of service (DoS) condition or execute arbitrary code.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Information
Published : 2019-07-29 09:15
Updated : 2019-08-06 10:11
NVD link : CVE-2019-12948
Mitre link : CVE-2019-12948
JSON object : View
CWE
CWE-749
Exposed Dangerous Method or Function
Products Affected
polycom
- c12
- soundpoint_ip_335
- soundpoint_pro_se-225
- soundpoint_ip_670
- vvx401
- vvx501
- soundpoint_ip_331
- soundstation2
- unified_communications_software
- soundpoint_ip_321
- soundstation_vtx_1000
- vvx600
- vvx400
- soundpoint_ip_500
- soundstation_ip_4000
- vvx601
- soundpoint_ip_330
- vvx411
- c16
- soundpoint_ip_600
- vvx311
- soundstation_ip_7000
- vvx410
- trio_8500
- soundpoint_ip_320
- soundpoint_ip_300
- soundpoint_ip_501
- soundstation_ip_5000
- soundpoint_ip_560
- vvx250
- soundstation_ip_6000
- soundpoint_ip_550
- soundpoint_ip_450
- united_communications_software
- vvx301
- soundstation2_avaya_2490
- soundpoint_ip_301
- vvx500
- soundstation_duo
- vvx201
- soundstation_ip_7000_video_integration
- trio_8800
- vvx310
- soundpoint_pro_se-220
- vvx150
- soundpoint_ip_601
- vvx300
- vvx450
- soundpoint_ip_650
- vvx350
- c8
- soundstation2w
- soundstation2_direct_connect_for_nortel
- soundpoint_ip_430