CVE-2015-8300: High severity polycom better together over ethernet connector vulnerability
Published Aug 28, 2017
·Updated
Polycom BToE Connector before 3.0.0 uses weak permissions (Everyone: Full Control) for "Program Files (x86)\polycom\polycom btoe connector\plcmbtoesrv.exe," which allows local users to gain privileges via a Trojan horse file.
Affected Software
1 affected component
Polycom BToE Connector<=2.3.0
Event History
Aug 28, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-8300?
CVE-2015-8300 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2015-8300?
To fix CVE-2015-8300, update to version 3.0.0 or later of the Polycom BToE Connector.
3
What does CVE-2015-8300 affect?
CVE-2015-8300 affects versions of Polycom BToE Connector prior to 3.0.0.
4
What type of vulnerability is CVE-2015-8300?
CVE-2015-8300 is a vulnerability that exploits weak permissions for local users.
5
Can CVE-2015-8300 be exploited remotely?
No, CVE-2015-8300 requires local access to the system to be exploited.