High severity7.5NVD Advisory· Published Jan 28, 2020· Updated Jun 16, 2026
CVE-2012-6609
CVE-2012-6609
Description
Directory traversal vulnerability in a_getlog.cgi in Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Polycom/HDX Video End Pointsdescription
- Range: <3.0.4
Patches
Vulnerability mechanics
References
2- seclists.org/fulldisclosure/2012/Mar/18nvdMailing ListThird Party Advisory
- web.archive.org/web/20130317232013/http://blog.tempest.com.br/joao-paulo-campello/polycom-web-management-interface-os-command-injection.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.