CVE-2025-43484: Poly Clariti Manager - Multiple Security Vulnerabilities
A potential reflected cross-site scripting vulnerability has been identified in the Poly Clariti Manager for versions prior to 10.12.1. The website does not validate or sanitize the user input before rendering it in the response. HP has addressed the issue in the latest software update.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-43484?
CVE-2025-43484 is classified as a high severity vulnerability due to the potential for reflected cross-site scripting attacks.
How do I fix CVE-2025-43484?
To fix CVE-2025-43484, upgrade to the latest version of Poly Clariti Manager, specifically version 10.12.1 or later.
What type of vulnerability is CVE-2025-43484?
CVE-2025-43484 is a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts.
Which versions of Poly Clariti Manager are affected by CVE-2025-43484?
CVE-2025-43484 affects all versions of Poly Clariti Manager prior to 10.12.1.
What happens if I don't address CVE-2025-43484?
Failing to address CVE-2025-43484 could lead to successful cross-site scripting attacks, compromising user data and security.