CVE-2012-4970
01.01.2013, 12:35
Cross-site scripting (XSS) vulnerability in the web management interface on Polycom HDX Video End Points with UC APL software before 2.7.1.1_J, and commercial software before 3.0.5, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Vendor | Product | Version |
---|---|---|
polycom | hdx_system_software | 𝑥 ≤ 2.7.1_j |
polycom | hdx_system_software | 2.0.5_j:_j |
polycom | hdx_system_software | 2.5.0.7 |
polycom | hdx_system_software | 2.5.0.7_g:_g |
polycom | hdx_system_software | 2.6.1 |
polycom | hdx_system_software | 2.6.1.3 |
polycom | hdx_system_software | 2.7.0_j:_j |
polycom | hdx_system_software | 𝑥 ≤ 3.0.4 |
polycom | hdx_system_software | 3.0.0 |
polycom | hdx_system_software | 3.0.0.1 |
polycom | hdx_system_software | 3.0.0.2 |
polycom | hdx_system_software | 3.0.1 |
polycom | hdx_system_software | 3.0.2 |
polycom | hdx_system_software | 3.0.3 |
polycom | hdx_system_software | 3.0.3.1 |
𝑥
= Vulnerable software versions
References