5
CVSSv2

CVE-2018-18566

Published: 24/10/2018 Updated: 15/06/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The SIP service in Polycom VVX 500 and 601 devices 5.8.0.12848 and previous versions allow remote malicious users to obtain sensitive phone configuration information by leveraging use with an on-premise installation with Skype for Business.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

polycom unified communications software

polycom vvx_601_firmware -

polycom vvx_500_firmware -

Exploits

Polycom VVX 500 / VVX 601 versions 58012848 and below suffer from an information exposure vulnerability ...