CVE-2021-37145
07.09.2021, 23:15
A command-injection vulnerability in an authenticated Telnet connection in Poly (formerly Polycom) CX5500 and CX5100 1.3.5 leads an attacker to Privilege Escalation and Remote Code Execution capability. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Vendor | Product | Version |
---|---|---|
poly | cx5500_firmware | 1.3.5 |
poly | cx5100_firmware | 1.3.5 |
𝑥
= Vulnerable software versions
References