CVE-2023-25591
22.03.2023, 06:15
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow a remote attacker authenticated with low privileges to access sensitive information. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further privileges on the ClearPass instance.Enginsight
Vendor | Product | Version |
---|---|---|
arubanetworks | clearpass_policy_manager | 6.9.0 ≤ 𝑥 ≤ 6.9.13 |
arubanetworks | clearpass_policy_manager | 6.10.0 ≤ 𝑥 ≤ 6.10.8 |
arubanetworks | clearpass_policy_manager | 6.11.0 |
arubanetworks | clearpass_policy_manager | 6.11.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration