CVE-2023-25589
22.03.2023, 06:15
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to create arbitrary users on the platform. A successful exploit allows an attacker to achieve total cluster compromise.Enginsight
Vendor | Product | Version |
---|---|---|
arubanetworks | clearpass_policy_manager | 6.9.0 ≤ 𝑥 ≤ 6.9.13 |
arubanetworks | clearpass_policy_manager | 6.10.0 ≤ 𝑥 ≤ 6.10.8 |
arubanetworks | clearpass_policy_manager | 6.11.0 |
arubanetworks | clearpass_policy_manager | 6.11.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration