VYPR
Medium severity4.8NVD Advisory· Published Jul 23, 2025· Updated Jun 17, 2026

CVE-2025-43486

CVE-2025-43486

Description

A potential stored cross-site scripting vulnerability has been identified in the Poly Clariti Manager for versions prior to 10.12.1. The website allows user input to be stored and rendered without proper sanitization. HP has addressed the issue in the latest software update.

Affected products

2
  • Range: <10.12.1
  • HP Inc./Poly Clariti Managerv5
    Range: See HP Security Bulletin reference for affected versions.

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.