Critical severity9.8NVD Advisory· Published Jul 17, 2022· Updated Jun 17, 2026
CVE-2022-26479
CVE-2022-26479
Description
An issue was discovered in Poly EagleEye Director II before 2.2.2.1. Existence of a certain file (which can be created via an rsync backdoor) causes all API calls to execute as admin without authentication.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Poly/EagleEye Director IIdescription
- cpe:2.3:o:poly:eagleeye_director_ii_firmware:*:*:*:*:*:*:*:*Range: <2.2.2.1
Patches
Vulnerability mechanics
References
3- sec-consult.com/vulnerability-lab/advisory/critical-vulnerabilities-poly-eagleeye-director-ii/nvdExploitThird Party Advisory
- sec-consult.com/de/vulnerability-lab/advisory/poly-eagleeye-director-ii-kritische-schwachstellen/nvdThird Party Advisory
- www.poly.com/us/en/support/security-centernvdVendor Advisory
News mentions
0No linked articles in our index yet.