-
1
×InformationNeed Windows 11 help?Check documents on compatibility, FAQs, upgrade information and available fixes.
Windows 11 Support Center. -
-
1
×InformationNeed Windows 11 help?Check documents on compatibility, FAQs, upgrade information and available fixes.
Windows 11 Support Center. -
- HP Community
- Poly Phones
- Desk and IP Conference Phones
- Re: Polycom VVX jquery vulnerability on network security sca...

Create an account on the HP Community to personalize your profile and ask a question

06-04-2020 08:57 AM
I have several Polycom VVX 300 and 310 phones installed at my customer's site. They recently did a network security scan and the phones are being flagged with a JQuery vulnerability. I have looked into the phones settings and researched the internet but I cannot seem to find a way to disable this so it no longer shows up on the scan.
The phones are firmware 5.8.0.12848. They are connecting to ReInvent Cloud service.
I have attached a screen shot of the scan message they are getting about the phones.
Any help on this is appreciated.
Thanks
06-04-2020 08:59 AM
Hello @JPeck ,
Welcome to the Poly Community.
UC Software 5.8.0 is no longer supported. Please upgrade to UC Software 5.9.6 and re-test.
Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.
Best Regards
Steffen Baier
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.
Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN
06-30-2021 07:17 AM
Welcome to the Poly Community.
JQuery CVE-2020-11022 should be fixed in the following builds:
- UCS 5.9.7 (planned for ~ Mid August subject to change)
- UCS 6.1.3 No ETA so far
- UCS 6.2.2 No ETA so far
- UCS 6.3.2 No ETA so far
- UCS 6.4.0 Release >here<
Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.
Best Regards
Steffen Baier
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.
Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN
06-30-2021 10:01 AM
Hello @mwiater ,
Welcome to the Poly Community.
All published security alerts can be found >here<
Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.
Best Regards
Steffen Baier
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.
Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN