CVE-2019-12948

Summary

CVECVE-2019-12948
StatePUBLIC
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2019-07-29 16:15:00 UTC
Updated2019-08-06 17:11:00 UTC
DescriptionA vulnerability in the web-based management interface of VVX, Trio, SoundStructure, SoundPoint, and SoundStation phones running Polycom UC Software, if exploited, could allow an authenticated, remote attacker with admin privileges to cause a denial of service (DoS) condition or execute arbitrary code.

Risk And Classification

Problem Types: CWE-749

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Hardware Polycom C12 - All All All
Hardware Polycom C12 - All All All
Hardware Polycom C16 - All All All
Hardware Polycom C16 - All All All
Hardware Polycom C8 - All All All
Hardware Polycom C8 - All All All
Hardware Polycom Soundpoint Ip 300 - All All All
Hardware Polycom Soundpoint Ip 300 - All All All
Hardware Polycom Soundpoint Ip 301 - All All All
Hardware Polycom Soundpoint Ip 301 - All All All
Hardware Polycom Soundpoint Ip 320 - All All All
Hardware Polycom Soundpoint Ip 320 - All All All
Hardware Polycom Soundpoint Ip 321 - All All All
Hardware Polycom Soundpoint Ip 321 - All All All
Hardware Polycom Soundpoint Ip 330 - All All All
Hardware Polycom Soundpoint Ip 330 - All All All
Hardware Polycom Soundpoint Ip 331 - All All All
Hardware Polycom Soundpoint Ip 331 - All All All
Hardware Polycom Soundpoint Ip 335 - All All All
Hardware Polycom Soundpoint Ip 335 - All All All
Hardware Polycom Soundpoint Ip 430 - All All All
Hardware Polycom Soundpoint Ip 430 - All All All
Hardware Polycom Soundpoint Ip 450 - All All All
Hardware Polycom Soundpoint Ip 450 - All All All
Hardware Polycom Soundpoint Ip 500 - All All All
Hardware Polycom Soundpoint Ip 500 - All All All
Hardware Polycom Soundpoint Ip 501 - All All All
Hardware Polycom Soundpoint Ip 501 - All All All
Hardware Polycom Soundpoint Ip 550 - All All All
Hardware Polycom Soundpoint Ip 550 - All All All
Hardware Polycom Soundpoint Ip 560 - All All All
Hardware Polycom Soundpoint Ip 560 - All All All
Hardware Polycom Soundpoint Ip 600 - All All All
Hardware Polycom Soundpoint Ip 600 - All All All
Hardware Polycom Soundpoint Ip 601 - All All All
Hardware Polycom Soundpoint Ip 601 - All All All
Hardware Polycom Soundpoint Ip 650 - All All All
Hardware Polycom Soundpoint Ip 650 - All All All
Hardware Polycom Soundpoint Ip 670 - All All All
Hardware Polycom Soundpoint Ip 670 - All All All
Hardware Polycom Soundpoint Pro Se-220 - All All All
Hardware Polycom Soundpoint Pro Se-220 - All All All
Hardware Polycom Soundpoint Pro Se-225 - All All All
Hardware Polycom Soundpoint Pro Se-225 - All All All
Hardware Polycom Soundstation2 - All All All
Hardware Polycom Soundstation2 - All All All
Hardware Polycom Soundstation2w - All All All
Hardware Polycom Soundstation2w - All All All
Hardware Polycom Soundstation2 Avaya 2490 - All All All
Hardware Polycom Soundstation2 Avaya 2490 - All All All
Hardware Polycom Soundstation2 Direct Connect For Nortel - All All All
Hardware Polycom Soundstation2 Direct Connect For Nortel - All All All
Hardware Polycom Soundstation Duo - All All All
Hardware Polycom Soundstation Duo - All All All
Hardware Polycom Soundstation Ip 4000 - All All All
Hardware Polycom Soundstation Ip 4000 - All All All
Hardware Polycom Soundstation Ip 5000 - All All All
Hardware Polycom Soundstation Ip 5000 - All All All
Hardware Polycom Soundstation Ip 6000 - All All All
Hardware Polycom Soundstation Ip 6000 - All All All
Hardware Polycom Soundstation Ip 7000 - All All All
Hardware Polycom Soundstation Ip 7000 - All All All
Hardware Polycom Soundstation Ip 7000 Video Integration - All All All
Hardware Polycom Soundstation Ip 7000 Video Integration - All All All
Hardware Polycom Soundstation Vtx 1000 - All All All
Hardware Polycom Soundstation Vtx 1000 - All All All
Hardware Polycom Trio 8500 - All All All
Hardware Polycom Trio 8500 - All All All
Hardware Polycom Trio 8800 - All All All
Hardware Polycom Trio 8800 - All All All
Operating System Polycom Unified Communications Software All All All All
Operating System Polycom Unified Communications Software All All All All
Operating System Polycom United Communications Software All All All All
Operating System Polycom United Communications Software All All All All
Hardware Polycom Vvx150 - All All All
Hardware Polycom Vvx150 - All All All
Hardware Polycom Vvx201 - All All All
Hardware Polycom Vvx201 - All All All
Hardware Polycom Vvx250 - All All All
Hardware Polycom Vvx250 - All All All
Hardware Polycom Vvx300 - All All All
Hardware Polycom Vvx300 - All All All
Hardware Polycom Vvx301 - All All All
Hardware Polycom Vvx301 - All All All
Hardware Polycom Vvx310 - All All All
Hardware Polycom Vvx310 - All All All
Hardware Polycom Vvx311 - All All All
Hardware Polycom Vvx311 - All All All
Hardware Polycom Vvx350 - All All All
Hardware Polycom Vvx350 - All All All
Hardware Polycom Vvx400 - All All All
Hardware Polycom Vvx400 - All All All
Hardware Polycom Vvx401 - All All All
Hardware Polycom Vvx401 - All All All
Hardware Polycom Vvx410 - All All All
Hardware Polycom Vvx410 - All All All
Hardware Polycom Vvx411 - All All All
Hardware Polycom Vvx411 - All All All
Hardware Polycom Vvx450 - All All All
Hardware Polycom Vvx450 - All All All
Hardware Polycom Vvx500 - All All All
Hardware Polycom Vvx500 - All All All
Hardware Polycom Vvx501 - All All All
Hardware Polycom Vvx501 - All All All
Hardware Polycom Vvx600 - All All All
Hardware Polycom Vvx600 - All All All
Hardware Polycom Vvx601 - All All All
Hardware Polycom Vvx601 - All All All

References

ReferenceSourceLinkTags
support.polycom.com/content/dam/polycom-support/global/documentation/remote-code-... CONFIRM support.polycom.com Vendor Advisory
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report