CVE-2023-4463 MEDIUM

CVE-2023-4463: Poly CCX 400/CCX 600/Trio 8800/Trio C60 HTTP Header denial of service

Vendor Poly
Product CCX 400
Weakness CWE-404
Published December 29, 2023
Last update August 2, 2024

CVSS base score

5.3/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality None
Integrity None

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

What the vulnerability does

01Description

A vulnerability classified as problematic was found in Poly CCX 400, CCX 600, Trio 8800 and Trio C60. This vulnerability affects unknown code of the component HTTP Header Handler. The manipulation of the argument Cookie leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-249256.

Key dates

02Disclosure timeline

December 29, 2023 CVE published
August 2, 2024 Record updated