{
    "id": "CVE-2015-4683",
    "published": "2017-09-19 19:29:00",
    "last_modified": "2026-06-17 00:27:43",
    "cvss_score": "9.8",
    "cvss_severity": "CRITICAL",
    "cvss_version": "3.0",
    "cvss_vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
    "cwe": "CWE-264",
    "description": "Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows attackers to obtain sensitive information and potentially gain privileges by leveraging use of session identifiers as parameters with HTTP GET requests.",
    "epss_score": "0.06873",
    "epss_percentile": "0.93832",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-09-27 18:17:14",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "polycom",
            "product": "realpresence_resource_manager"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "37449",
            "title": "Polycom RealPresence Resource Manager < 8.4 - Multiple Vulnerabilities",
            "date": "2015-06-30",
            "url": "https://www.exploit-db.com/exploits/37449"
        }
    ],
    "refs_list": [
        "http://packetstormsecurity.com/files/132463/Polycom-RealPresence-Resource-Manager-RPRM-Disclosure-Traversal.html",
        "http://seclists.org/fulldisclosure/2015/Jun/81",
        "http://www.securityfocus.com/archive/1/535852/100/0/threaded",
        "http://www.securityfocus.com/bid/75432",
        "https://support.polycom.com/global/documents/support/documentation/Security_Center_Post_for_RPRM_CVEs.pdf",
        "https://www.exploit-db.com/exploits/37449/",
        "http://packetstormsecurity.com/files/132463/Polycom-RealPresence-Resource-Manager-RPRM-Disclosure-Traversal.html",
        "http://seclists.org/fulldisclosure/2015/Jun/81",
        "http://www.securityfocus.com/archive/1/535852/100/0/threaded",
        "http://www.securityfocus.com/bid/75432",
        "https://support.polycom.com/global/documents/support/documentation/Security_Center_Post_for_RPRM_CVEs.pdf",
        "https://www.exploit-db.com/exploits/37449/"
    ]
}