CVE-2024-41911

A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The flaw does not properly neutralize input during a web page generation.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:hp:poly_clariti_manager_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:poly_clariti_manager:-:*:*:*:*:*:*:*

History

13 Aug 2024, 13:06

Type Values Removed Values Added
References () https://support.hp.com/us-en/document/ish_11006770-11006795-16/hpsbpy03959 - () https://support.hp.com/us-en/document/ish_11006770-11006795-16/hpsbpy03959 - Vendor Advisory
CWE CWE-79
CPE cpe:2.3:h:hp:poly_clariti_manager:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:poly_clariti_manager_firmware:*:*:*:*:*:*:*:*
First Time Hp poly Clariti Manager Firmware
Hp
Hp poly Clariti Manager
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.4

06 Aug 2024, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-06 14:16

Updated : 2024-10-28 21:35


NVD link : CVE-2024-41911

Mitre link : CVE-2024-41911


JSON object : View

Products Affected

hp

  • poly_clariti_manager
  • poly_clariti_manager_firmware
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')