Poly Clariti Manager SQL Injection Vulnerability
Vulnerability
A SQL injection vulnerability has been identified in Poly Clariti Manager versions prior to 10.12.1. This vulnerability could allow a privileged user to execute SQL commands. HP has addressed this issue in the latest software update.
Impact
Exploitation of this vulnerability could lead to unauthorized execution of SQL commands, potentially allowing for further attacks such as privilege escalation or manipulation of the application's database.
Remediation
Users are advised to update to version 10.12.2 or later. The latest builds can be obtained through the Poly Lens Management Console.
Added: Jul 22, 2025, 11:16 PM
Updated: Jul 22, 2025, 11:16 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
5.0exploitability
5.2remediation
7.7relevance
0.3threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
