CVE-2025-25039
- EPSS 0.17%
- Veröffentlicht 04.02.2025 19:15:33
- Zuletzt bearbeitet 28.03.2025 17:37:36
A vulnerability in the web-based management interface of HPE Aruba Networking ClearPass Policy Manager (CPPM) allows remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute ...
CVE-2025-23058
- EPSS 0.12%
- Veröffentlicht 04.02.2025 18:15:35
- Zuletzt bearbeitet 28.03.2025 17:55:42
A vulnerability in the ClearPass Policy Manager web-based management interface allows a low-privileged (read-only) authenticated remote attacker to gain unauthorized access to data and the ability to execute functions that should be restricted to adm...
CVE-2025-23059
- EPSS 0.08%
- Veröffentlicht 04.02.2025 18:15:35
- Zuletzt bearbeitet 28.03.2025 17:53:08
A vulnerability in the web-based management interface of HPE Aruba Networking ClearPass Policy Manager exposes directories containing sensitive information. If exploited successfully, this vulnerability allows an authenticated remote attacker with hi...
CVE-2025-23060
- EPSS 0.06%
- Veröffentlicht 04.02.2025 18:15:35
- Zuletzt bearbeitet 28.03.2025 17:39:14
A vulnerability in HPE Aruba Networking ClearPass Policy Manager may, under certain circumstances, expose sensitive unencrypted information. Exploiting this vulnerability could allow an attacker to perform a man-in-the-middle attack, potentially gran...
- EPSS 0.13%
- Veröffentlicht 03.12.2024 21:15:07
- Zuletzt bearbeitet 07.04.2025 15:03:37
An authenticated RCE vulnerability in the ClearPass Policy Manager web-based management interface allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation could allow an attacker to execute arbitrary...
CVE-2024-51773
- EPSS 0.08%
- Veröffentlicht 03.12.2024 21:15:07
- Zuletzt bearbeitet 07.04.2025 15:02:49
A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote Attacker to conduct a stored cross-site scripting (XSS) attack. Successful exploitation could enable a threat acto...
CVE-2024-53672
- EPSS 0.18%
- Veröffentlicht 03.12.2024 21:15:07
- Zuletzt bearbeitet 07.04.2025 15:02:36
A vulnerability in the ClearPass Policy Manager web-based management interface allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploit could allow an attacker to execute arbitrary commands as a lower pri...
CVE-2024-51771
- EPSS 0.69%
- Veröffentlicht 03.12.2024 20:15:15
- Zuletzt bearbeitet 07.04.2025 15:02:08
A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote threat actor to conduct a remote code execution attack. Successful exploitation could enable the attacker to run a...
CVE-2024-5486
- EPSS 0.36%
- Veröffentlicht 30.07.2024 17:15:14
- Zuletzt bearbeitet 21.11.2024 09:47:46
A vulnerability exists in ClearPass Policy Manager that allows for an attacker with administrative privileges to access sensitive information in a cleartext format. A successful exploit allows an attacker to retrieve information which could be used t...
CVE-2024-41915
- EPSS 0.57%
- Veröffentlicht 30.07.2024 17:15:13
- Zuletzt bearbeitet 07.04.2025 15:00:47
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit this vulnerabilit...