Admin Cookie Reset Issue in Polycom RealPresence Debut
CVE-2018-10947

3.1LOW

Key Information:

Vendor

Polycom

Vendor
CVE Published:
13 June 2019

What is CVE-2018-10947?

A security issue has been identified in Polycom RealPresence Debut devices, where the admin cookie is reset only after a reboot. This flaw can lead to unauthorized access attempts and may compromise the device's security. Users are encouraged to update to version 1.3.2 or later to mitigate this risk.

References

CVSS V3.1

Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.