A vulnerability in the Poly Lens Desktop application running on the Windows platform might allow modifications to the filesystem, which might lead to SYSTEM level privileges being granted.
References
| Link | Resource |
|---|---|
| https://support.hp.com/us-en/document/ish_12979589-12979615-16/hpsbpy04048 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
16 Jan 2026, 16:36
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.hp.com/us-en/document/ish_12979589-12979615-16/hpsbpy04048 - Vendor Advisory | |
| First Time |
Microsoft
Hp poly Lens Desktop Hp Microsoft windows |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
| CPE | cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:a:hp:poly_lens_desktop:*:*:*:*:*:*:*:* |
09 Sep 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-09-09 21:15
Updated : 2026-01-16 16:36
NVD link : CVE-2025-43491
Mitre link : CVE-2025-43491
CVE.ORG link : CVE-2025-43491
JSON object : View
Products Affected
hp
- poly_lens_desktop
microsoft
- windows
CWE
CWE-99
Improper Control of Resource Identifiers ('Resource Injection')
