CVE-2012-4970

Polycom HDX Video End Points <2.7.1.1_J-3.0.5 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in the web management interface on Polycom HDX Video End Points with UC APL software before 2.7.1.1_J, and commercial software before 3.0.5, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0025
EPSS Percentile 48.5%

Details

CWE
CWE-79
Status published
Products (15)
polycom/hdx_system_software < 2.7.1_j
polycom/hdx_system_software
polycom/hdx_system_software
polycom/hdx_system_software
polycom/hdx_system_software
polycom/hdx_system_software
polycom/hdx_system_software
polycom/hdx_system_software
polycom/hdx_system_software
polycom/hdx_system_software
... and 5 more
Published Jan 01, 2013
Tracked Since Feb 18, 2026