4.3
CVSSv2

CVE-2012-4970

Published: 01/01/2013 Updated: 26/03/2013
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the web management interface on Polycom HDX Video End Points with UC APL software prior to 2.7.1.1_J, and commercial software prior to 3.0.5, allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

polycom hdx_system_software 2.5.0.7_g

polycom hdx_system_software 2.0.5_j

polycom hdx_system_software 2.5.0.7

polycom hdx_system_software 2.6.1.3

polycom hdx_system_software 2.7.0_j

polycom hdx_system_software

polycom hdx_system_software 2.6.1

polycom hdx_system_software 3.0.1

polycom hdx_system_software 3.0.0

polycom hdx_system_software 3.0.3.1

polycom hdx_system_software 3.0.3

polycom hdx_system_software 3.0.0.2

polycom hdx_system_software 3.0.0.1

polycom hdx_system_software 3.0.2