VYPR

UC APL

by Polycom

CVEs (2)

  • CVE-2012-6610HigJan 28, 2020
    risk 0.61cvss 8.8epss 0.11

    Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote authenticated users to execute arbitrary commands as demonstrated by a ; (semicolon) to the ping command feature.

  • CVE-2012-6609HigJan 28, 2020
    risk 0.49cvss 7.5epss 0.02

    Directory traversal vulnerability in a_getlog.cgi in Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.