CVE-2025-43491

A vulnerability in the Poly Lens Desktop application running on the Windows platform might allow modifications to the filesystem, which might lead to SYSTEM level privileges being granted.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:hp:poly_lens_desktop:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

16 Jan 2026, 16:36

Type Values Removed Values Added
References () https://support.hp.com/us-en/document/ish_12979589-12979615-16/hpsbpy04048 - () https://support.hp.com/us-en/document/ish_12979589-12979615-16/hpsbpy04048 - Vendor Advisory
First Time Microsoft
Hp poly Lens Desktop
Hp
Microsoft windows
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:hp:poly_lens_desktop:*:*:*:*:*:*:*:*

09 Sep 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-09 21:15

Updated : 2026-01-16 16:36


NVD link : CVE-2025-43491

Mitre link : CVE-2025-43491

CVE.ORG link : CVE-2025-43491


JSON object : View

Products Affected

hp

  • poly_lens_desktop

microsoft

  • windows
CWE
CWE-99

Improper Control of Resource Identifiers ('Resource Injection')