CVE-2018-15128: Polycom Group Series

Critical severity, CVSS 9.8. EPSS: 5.2% chance of exploitation in the next 30 days.

An issue was discovered in Polycom Group Series 6.1.6.1 and earlier, HDX 3.1.12 and earlier, and Pano 1.1.1 and earlier. A remote code execution vulnerability exists in the content sharing functionality because of a Buffer Overflow via crafted packets.

Affected products

  • Polycom Group Series: up to and including 6.1.6.1
  • Polycom Hdx: up to and including 3.1.12
  • Polycom Pano: up to and including 1.1.1

Published 2019-05-13. Last modified 2026-06-17.