Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2022-26482

Disclosure Date: July 17, 2022 (last updated February 24, 2025)
An issue was discovered in Poly EagleEye Director II before 2.2.2.1. os.system command injection can be achieved by an admin.
Attacker Value
Unknown

CVE-2022-26479

Disclosure Date: July 17, 2022 (last updated February 24, 2025)
An issue was discovered in Poly EagleEye Director II before 2.2.2.1. Existence of a certain file (which can be created via an rsync backdoor) causes all API calls to execute as admin without authentication.