CVE-2018-14934: Polycom Trio 8500 Firmware

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

The Bluetooth subsystem on Polycom Trio devices with software before 5.5.4 has Incorrect Access Control. An attacker can connect without authentication and subsequently record audio from the device microphone.

Affected products

  • Polycom Trio 8500 Firmware: before 5.5.4 (fixed in 5.5.4)

Published 2018-11-15. Last modified 2026-06-17.