CVE-2023-43510
25.10.2023, 18:17
A vulnerability in the ClearPass Policy Manager web-basedmanagement interface allows remote authenticated users torun arbitrary commands on the underlying host. A successfulexploit could allow an attacker to execute arbitrarycommands as a non-privileged user on the underlyingoperating system leading to partial system compromise.
Vendor | Product | Version |
---|---|---|
arubanetworks | clearpass_policy_manager | 𝑥 < 6.9.13 |
arubanetworks | clearpass_policy_manager | 6.10.0 ≤ 𝑥 < 6.10.8 |
arubanetworks | clearpass_policy_manager | 6.11.0 ≤ 𝑥 ≤ 6.11.4 |
arubanetworks | clearpass_policy_manager | 6.9.13 |
arubanetworks | clearpass_policy_manager | 6.9.13:cumulative_hotfix_patch_2 |
arubanetworks | clearpass_policy_manager | 6.9.13:cumulative_hotfix_patch_3 |
arubanetworks | clearpass_policy_manager | 6.10.8 |
arubanetworks | clearpass_policy_manager | 6.10.8:cumulative_hotfix_patch_2 |
arubanetworks | clearpass_policy_manager | 6.10.8:cumulative_hotfix_patch_5 |
𝑥
= Vulnerable software versions