Vulnerabilities > Polycom > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-03-12 CVE-2019-11355 OS Command Injection vulnerability in Polycom HDX System Software
An issue was discovered in Poly (formerly Polycom) HDX 3.1.13.
network
low complexity
polycom CWE-78
critical
9.0
2020-02-10 CVE-2012-6611 Use of Hard-coded Credentials vulnerability in Polycom HDX System Software
An issue was discovered in Polycom Web Management Interface G3/HDX 8000 HD with Durango 2.6.0 4740 software and embedded Polycom Linux Development Platform 2.14.g3.
network
low complexity
polycom CWE-798
critical
10.0
2020-01-28 CVE-2012-6610 OS Command Injection vulnerability in Polycom HDX Video END Points and UC APL
Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote authenticated users to execute arbitrary commands as demonstrated by a ; (semicolon) to the ping command feature.
network
low complexity
polycom CWE-78
critical
9.0
2019-05-13 CVE-2018-15128 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Polycom Group Series, HDX and Pano
An issue was discovered in Polycom Group Series 6.1.6.1 and earlier, HDX 3.1.12 and earlier, and Pano 1.1.1 and earlier.
network
low complexity
polycom CWE-119
critical
10.0