vendor:
VVX Series Business Media Phones
by:
Jake Reynolds
8,8
CVSS
HIGH
Path Traversal
22
CWE
Product Name: VVX Series Business Media Phones
Affected Version From: UC Software 4.1.8 and earlier
Affected Version To: UC Software 5.4.0 and earlier
Patch Exists: YES
Related CWE: N/A
CPE: a:polycom:vvx_series_business_media_phones
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2015
Polycom VVX-Series Business Media Phones Path Traversal Vulnerability
Polycom VVX-series IP phones provide a web administrative interface. Inside this interface two URLs were discovered that exposed a 'file=filename' parameters. Due to unsafe file system operations in this interface, it is possible to exploit the following pages, and possibly others, using path traversal attacks.
Mitigation:
Upgrade to the latest version of UC Software available. Disable or restrict access to the web interface.