CVE-2025-43486
Poly Clariti Manager - Multiple Security Vulnerabilities
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.7EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
22 Jul 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A potential stored cross-site scripting vulnerability has been
identified in the Poly Clariti Manager for versions prior to 10.12.1. The
website allows user input to be stored and rendered without proper
sanitization. HP has addressed the issue in the latest software update.
CVSS:4.0/AV:A/AC:L/AT:P/PR:H/UI:N/VC:H/VI:N/VA:N/SC:L/SI:N/SA:N
Affected products
HP Inc. · Poly Clariti ManagerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →