Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-67w3-8vjj-xpmw

Опубликовано: 25 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

Vulnerabilities in the web-based management interface of ClearPass Policy Manager allow an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. Successful exploitation of these vulnerabilities allow an attacker to complete state-changing actions in the web-based management interface that should not be allowed by their current level of authorization on the platform.

Vulnerabilities in the web-based management interface of ClearPass Policy Manager allow an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. Successful exploitation of these vulnerabilities allow an attacker to complete state-changing actions in the web-based management interface that should not be allowed by their current level of authorization on the platform.

EPSS

Процентиль: 28%
0.00102
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.3
nvd
больше 2 лет назад

Vulnerabilities in the web-based management interface of ClearPass Policy Manager allow an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. Successful exploitation of these vulnerabilities allow an attacker to complete state-changing actions in the web-based management interface that should not be allowed by their current level of authorization on the platform.

EPSS

Процентиль: 28%
0.00102
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-863