CVE-2024-3281: HP Poly Ccx 350
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
A vulnerability was discovered in the firmware builds after 8.0.2.3267 and prior to 8.1.3.1301 in CCX devices. A flaw in the firmware build process did not properly restrict access to a resource from an unauthorized actor.
Affected products
- HP Poly Ccx 350: from 8.0.2.3267, before 8.1.3.1301 (fixed in 8.1.3.1301)
- HP Poly Ccx 400: from 8.0.2.3267, before 8.1.3.1301 (fixed in 8.1.3.1301)
- HP Poly Ccx 500: from 8.0.2.3267, before 8.1.3.1301 (fixed in 8.1.3.1301)
- HP Poly Ccx 505: from 8.0.2.3267, before 8.1.1301 (fixed in 8.1.1301)
- HP Poly Ccx 600: from 8.0.2.3267, before 8.1.3.1301 (fixed in 8.1.3.1301)
- HP Poly Ccx 700: from 8.0.2.3267, before 8.1.3.1301 (fixed in 8.1.3.1301)
Published 2024-04-09. Last modified 2026-06-17.