High severity7.5NVD Advisory· Published Nov 5, 2024· Updated Jun 17, 2026
CVE-2024-9579
CVE-2024-9579
Description
A potential vulnerability was discovered in certain Poly video conferencing devices. The firmware flaw does not properly sanitize user input. The exploitation of this vulnerability is dependent on a layered attack and cannot be exploited by itself.
Affected products
9- HP, Inc./Certain Poly Video Conference Devicesv5Range: See HP security bulletin reference for affected versions
- cpe:2.3:o:hp:poly_studio_g7500_firmware:*:*:*:*:*:*:*:*Range: <4.3.2
- cpe:2.3:o:hp:poly_studio_x30_firmware:*:*:*:*:*:*:*:*Range: <=4.3.2
- cpe:2.3:o:hp:poly_studio_x50_firmware:*:*:*:*:*:*:*:*Range: <4.3.2
- cpe:2.3:o:hp:poly_studio_x70_firmware:*:*:*:*:*:*:*:*Range: <4.3.2
- cpe:2.3:o:hp:poly_studio_x52_firmware:*:*:*:*:*:*:*:*Range: <4.3.2
- cpe:2.3:o:hp:poly_studio_g62_firmware:*:*:*:*:*:*:*:*Range: <4.3.2
Patches
Vulnerability mechanics
References
1- support.hp.com/us-en/document/ish_11536495-11536533-16/hpsbpy03900nvdVendor Advisory
News mentions
0No linked articles in our index yet.