Medium severity4.8NVD Advisory· Published Jul 23, 2025· Updated Jun 17, 2026
CVE-2025-43486
CVE-2025-43486
Description
A potential stored cross-site scripting vulnerability has been identified in the Poly Clariti Manager for versions prior to 10.12.1. The website allows user input to be stored and rendered without proper sanitization. HP has addressed the issue in the latest software update.
Affected products
2- Range: <10.12.1
- HP Inc./Poly Clariti Managerv5Range: See HP Security Bulletin reference for affected versions.
Patches
Vulnerability mechanics
References
1- support.hp.com/us-en/document/ish_12781425-12781447-16/hbsbpy04037nvdVendor Advisory
News mentions
0No linked articles in our index yet.