Privilege Escalation in Poly Clariti Manager by HP
CVE-2025-43487

6.9MEDIUM

Key Information:

Vendor

HP

Vendor
CVE Published:
23 July 2025

What is CVE-2025-43487?

A vulnerability affecting the Poly Clariti Manager has been identified, related to improper access control mechanisms allowing privilege escalation. In versions prior to 10.12.2, this flaw can potentially enable unauthorized users to gain elevated permissions, posing significant risks to system integrity. HP has released an update addressing this issue, highlighting the importance of timely software maintenance to secure your environments.

Affected Version(s)

Poly Clariti Manager See HP Security Bulletin reference for affected versions.

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

.