CVE-2025-14432 - CVE House
Back to Database
Status published High CVE-2025-14432

Poly Video - Sensitive Data Might Be Written to Log File

Vulnerability Description

In limited scenarios, sensitive data might be written to the log file if an admin uses Microsoft Teams Admin Center (TAC) to make device configuration changes. The affected log file is visible only to users with admin credentials. This is limited to Microsoft TAC and does not affect configuration changes made using the provisioning server or the device WebUI.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-14432

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Poly G7500, Poly Studio G62, Poly Studio X72, Poly Studio X52, Poly Studio X32, Poly Studio X70, Poly Studio X50, Poly Studio X30, Poly Studio E70, Poly Studio E60, Poly EagleEye Cube, Polycom EagleEye IV, Poly Studio A2, Poly Studio USB, TC8, TC10
Vulnerable Versions:
0

Timeline

Official Publish: December 16th, 2025
Last Modified: December 17th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)