ZeroHour

CVE-2018-18566

PoC ×2
CVSS 3.1
5.3 medium
EPSS
3%p85
Published
()
Modified
Description

The SIP service in Polycom VVX 500 and 601 devices 5.8.0.12848 and earlier allow remote attackers to obtain sensitive phone configuration information by leveraging use with an on-premise installation with Skype for Business.

Vendors
polycom
Products
unified communications software, vvx 601 firmware, vvx 500 firmware
Weakness
CWE-200
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.