CVE-2023-24282: Poly Trio 8800 Firmware

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

An arbitrary file upload vulnerability in Poly Trio 8800 7.2.2.1094 allows attackers to execute arbitrary code via a crafted ringtone file.

Affected products

  • Poly Trio 8800 Firmware: version 7.2.2.1094 only

Published 2023-03-08. Last modified 2026-07-09.