Vulnerabilities > Polycom > Better Together Over Ethernet Connector > 3.8.0

DATE CVE VULNERABILITY TITLE RISK
2019-06-24 CVE-2019-10689 Improper Authentication vulnerability in Polycom products
VVX products using UCS software version 5.9.2 and earlier with Better Together over Ethernet Connector (BToE) application version 3.9.1 and earlier provides insufficient authentication between the BToE application and the BToE component, resulting in leakage of sensitive information.
low complexity
polycom CWE-287
3.3
2019-04-23 CVE-2019-10688 Use of Hard-coded Credentials vulnerability in Polycom products
VVX products with software versions including and prior to, UCS 5.9.2 with Better Together over Ethernet Connector (BToE) application 3.9.1, use hard-coded credentials to establish connections between the host application and the device.
local
low complexity
polycom CWE-798
4.6