CVE-2025-0858
MEDIUMCertain Poly Devices - Path Traversal via Firmware Builds up to 8.2.1.0820
Title source: llmDescription
A vulnerability was discovered in the firmware builds up to 8.2.1.0820 in certain Poly devices. The firmware flaw does not properly prevent path traversal and could lead to information disclosure.
References (1)
Core 1
Core References
Scores
CVSS v4
5.8
EPSS
0.0025
EPSS Percentile
16.5%
CVSS:4.0/AV:A/AC:L/AT:P/PR:H/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-35
Status
published
Products (1)
HP, Inc./Certain Poly Devices
See HP security bulletin reference for affected versions
Published
Feb 05, 2025
Tracked Since
Feb 18, 2026