Skip to main content

Vendor archive

polycom CVEs

Beta · best-effort

39 CVEs tagged to vendor polycom4 Critical, 17 High, 16 Medium, 2 Low, 0 Unrated.

CVE-2019-11355

Published Mar 12, 2020

An issue was discovered in Poly (formerly Polycom) HDX 3.1.13. A feature exists that allows the creation of a server / client certificate, or the upload of the user certificate, o…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2012-6611

Published Feb 10, 2020

An issue was discovered in Polycom Web Management Interface G3/HDX 8000 HD with Durango 2.6.0 4740 software and embedded Polycom Linux Development Platform 2.14.g3. It has a blank…

CVSS 9.8 · Critical

CVE-2018-12592

Published Jun 20, 2018

Polycom RealPresence Web Suite before 2.2.0 does not block a user's video for a few seconds upon joining a meeting (when the user has explicitly chosen to turn off the video using…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-4685

Published Sep 19, 2017

Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows local users with access to the plcm account to gain privileges via a script in /var/polycom/cma/upgrade/scripts,…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2015-4684

Published Sep 19, 2017

Multiple directory traversal vulnerabilities in Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allow (1) remote authenticated users to read arbitrary files via a .. (…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-4683

Published Sep 19, 2017

Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows attackers to obtain sensitive information and potentially gain privileges by leveraging use of session identifie…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-4682

Published Sep 19, 2017

Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows remote authenticated users to obtain the installation path via an HTTP POST request to PlcmRmWeb/JConfigManager.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-8300

Published Aug 28, 2017

Polycom BToE Connector before 3.0.0 uses weak permissions (Everyone: Full Control) for "Program Files (x86)\polycom\polycom btoe connector\plcmbtoesrv.exe," which allows local use…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 39 CVEsPage 1 of 2