CNNVD-202507-2951 Information

CNNVD ID

CNNVD-202507-2951

CVE-2025-43486

  • CNNVD Published: 2025-07-23

Description (Chinese)

HP Poly Clariti Manager是美国惠普(HP)公司的一个集中管理、控制和优化视频会议基础设施的软件。 HP Poly Clariti Manager 10.12.1之前版本存在安全漏洞,该漏洞源于网站允许存储和渲染未适当清理的用户输入,可能导致存储型跨站脚本。

Description (English)

HP Poly Clariti Manager is a software for central management, control and optimization of videoconferencing infrastructure at Hewlett-Packard (HP) in the United States. Prior to HP Poly Clariti Manager 10.12.1, there was a security loophole, which stemmed from the fact that the website allowed storage and rendering of uncleaned user input, which could lead to storage-type cross-site scripts.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

惠普

Published

2025-07-23

Last Modified

2026-02-24

References

https://support.hp.com/us-en/document/ish_12781425-12781447-16/hbsbpy04037 https://access.redhat.com/security/cve/cve-2025-43486

Patch

https://support.hp.com/us-en/document/ish_12781425-12781447-16/hbsbpy04037

Share on: