Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gv37-7gxx-pj8g

Опубликовано: 22 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A vulnerability in the web-based management interface of ClearPass Policy Manager allows an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. Successful exploitation of this vulnerability allows an attacker to complete state-changing actions in the web-based management interface that should not be allowed by their current level of authorization on the platform.

A vulnerability in the web-based management interface of ClearPass Policy Manager allows an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. Successful exploitation of this vulnerability allows an attacker to complete state-changing actions in the web-based management interface that should not be allowed by their current level of authorization on the platform.

EPSS

Процентиль: 34%
0.00141
Низкий

8.8 High

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.3
nvd
почти 3 года назад

A vulnerability in the web-based management interface of ClearPass Policy Manager allows an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. Successful exploitation of this vulnerability allows an attacker to complete state-changing actions in the web-based management interface that should not be allowed by their current level of authorization on the platform.

EPSS

Процентиль: 34%
0.00141
Низкий

8.8 High

CVSS3

Дефекты

CWE-863