CVE-2025-23060
04.02.2025, 18:15
A vulnerability in HPE Aruba Networking ClearPass Policy Manager may, under certain circumstances, expose sensitive unencrypted information. Exploiting this vulnerability could allow an attacker to perform a man-in-the-middle attack, potentially granting unauthorized access to network resources as well as enabling data tampering.Enginsight
Vendor | Product | Version |
---|---|---|
arubanetworks | clearpass_policy_manager | 6.11.0 ≤ 𝑥 < 6.11.10 |
arubanetworks | clearpass_policy_manager | 6.12.0 ≤ 𝑥 < 6.12.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration