A vulnerability in the web-based management interface of ClearPass Policy Manager could allow a remote attacker authenticated with low privileges to access sensitive information. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further access to network services supported by ClearPass Policy Manager.
2024-02-27T23:15:07.627
2025-03-27T15:06:24.727
Analyzed
CVSSv3.1: 4.8 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | arubanetworks | clearpass_policy_manager | < 6.9.13 | Yes |
Application | arubanetworks | clearpass_policy_manager | < 6.10.8 | Yes |
Application | arubanetworks | clearpass_policy_manager | ≤ 6.11.6 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.9.13 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.9.13 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.9.13 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.9.13 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.10.8 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.10.8 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.10.8 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.10.8 | Yes |
Application | arubanetworks | clearpass_policy_manager | 6.12.0 | Yes |