cbcvebase.
CVE-2025-43020
published 2025-07-22

CVE-2025-43020: A potential command injection vulnerability has been identified in the Poly Clariti Manager for versions prior to 10.12.2. The vulnerability could allow a…

medium5.7CVSS 4.0
AVAACLATPPRHUINVCHVINVANSCLSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
A potential command injection vulnerability has been identified in the Poly Clariti Manager for versions prior to 10.12.2. The vulnerability could allow a privileged user to submit arbitrary input. HP has addressed the issue in the latest software update.

Affected

2 ranges
VendorProductVersion rangeFixed in
hppoly_clariti_manager< 10.12.210.12.2
hp_incpoly_clariti_manager