Описание
VVX products with software versions including and prior to, UCS 5.9.2 with Better Together over Ethernet Connector (BToE) application 3.9.1, use hard-coded credentials to establish connections between the host application and the device.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.8.0 (включая)Версия до 3.8.0 (включая)
Одновременно
cpe:2.3:a:polycom:unified_communications_software:*:*:*:*:*:*:*:*
cpe:2.3:a:polycom:better_together_over_ethernet_connector:*:*:*:*:*:*:*:*
EPSS
Процентиль: 17%
0.00054
Низкий
6.8 Medium
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-798
Связанные уязвимости
CVSS3: 6.8
github
больше 3 лет назад
VVX products using UCS software version 5.8.0 and earlier with Better Together over Ethernet Connector (BToE) application version 3.8.0 and earlier uses hard-coded credentials to establish a connection between the host application and device.
EPSS
Процентиль: 17%
0.00054
Низкий
6.8 Medium
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-798