CVE-2025-14432

HIGH EPSS 26.3%
Published Dec 16, 20256mo ago · Modified Jun 17, 20261w ago
8.1 CVSS 4.0
High
Find Similar
Published Dec 16, 2025 6mo ago
Last Modified Jun 17, 2026 1w ago

Description

In limited scenarios, sensitive data might be written to the log file if an admin uses Microsoft Teams Admin Center (TAC) to make device configuration changes. The affected log file is visible only to users with admin credentials. This is limited to Microsoft TAC and does not affect configuration changes made using the provisioning server or the device WebUI.

CVSS Details

Base Score
8.1
Exploitability
Impact
Vector string
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:A/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Attack Vector Network
Attack Complexity Low
Privileges Required High
User Interaction A
Scope X

Threat Intelligence

EPSS Exploit Probability
26.3% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

Weaknesses 1

CWE-532

Affected Products 18

VendorProductVersionRange
hppoly_videoos* <4.6.1-444242
hppoly_eagleeye_cube*any
hppoly_eagleeye_iv*any
hppoly_studio_a2*any
hppoly_studio_e60*any
hppoly_studio_e70*any
hppoly_studio_g62*any
hppoly_studio_g7500*any
hppoly_studio_usb*any
hppoly_studio_x30*any
hppoly_studio_x32*any
hppoly_studio_x50*any
hppoly_studio_x52*any
hppoly_studio_x70*any
hppoly_studio_x72*any
hppoly_tcos* <6.6.1-7001859
hppoly_tc10*any
hppoly_tc8*any

References 1

  • support.hp.com https://support.hp.com/us-en/document/ish_13612310-13612332-16/hpsbpy04080
    Vendor Advisory

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.