CVE-2025-43022

Severity CVSS v4.0:
HIGH
Type:
CWE-89 SQL Injection
Publication date:
22/07/2025
Last modified:
02/10/2025

Description

A potential SQL injection vulnerability has been identified in the Poly<br /> Clariti Manager for versions prior to 10.12.1. The vulnerability could allow<br /> a privileged user to execute SQL commands. HP has addressed the issue in<br /> the latest software update.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hp:poly_clariti_manager:*:*:*:*:*:*:*:* 10.12.2 (excluding)