Vulnerabilities within the web-based management interface of ClearPass Policy Manager could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit allows an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.
2023-03-22T06:15:10.220
2025-02-27T15:15:37.180
Modified
CVSSv3.1: 7.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | arubanetworks | clearpass_policy_manager | ≤ 6.9.13 | Yes |
Application | arubanetworks | clearpass_policy_manager | ≤ 6.10.8 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.11.0 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.11.1 | Yes |