A potential security vulnerability has been identified in the Poly Clariti Manager for versions prior to 10.12.2. The vulnerability could allow a bypass of the application's XSS filter by submitting untrusted characters. HP has addressed the issue in the latest software update.
History

Thu, 02 Oct 2025 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Hp
Hp poly Clariti Manager
CPEs cpe:2.3:a:hp:poly_clariti_manager:*:*:*:*:*:*:*:*
Vendors & Products Hp
Hp poly Clariti Manager
Metrics cvssV3_1

{'score': 4.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N'}


Wed, 23 Jul 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 22 Jul 2025 23:45:00 +0000

Type Values Removed Values Added
Description A potential security vulnerability has been identified in the Poly Clariti Manager for versions prior to 10.12.2. The vulnerability could allow a bypass of the application's XSS filter by submitting untrusted characters. HP has addressed the issue in the latest software update.
Title Poly Clariti Manager - Multiple Security Vulnerabilities
Weaknesses CWE-79
References
Metrics cvssV4_0

{'score': 2, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:P/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: hp

Published:

Updated: 2025-07-23T15:14:56.207Z

Reserved: 2025-04-16T15:25:24.712Z

Link: CVE-2025-43488

cve-icon Vulnrichment

Updated: 2025-07-23T14:56:21.210Z

cve-icon NVD

Status : Analyzed

Published: 2025-07-23T00:15:25.477

Modified: 2025-10-02T17:40:01.510

Link: CVE-2025-43488

cve-icon Redhat

No data.