Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x53x-v2cq-q98v

Опубликовано: 05 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.5

Описание

A vulnerability exists in the ClearPass Policy Manager cluster communications that allow for an attacker in a privileged network position to potentially obtain sensitive information. A successful exploit could allow an attacker to retrieve information that allows for unauthorized actions as a privileged user on the ClearPass Policy Manager cluster in Aruba ClearPass Policy Manager version(s): ClearPass Policy Manager 6.10.x: 6.10.7 and below and ClearPass Policy Manager 6.9.x: 6.9.12 and below.

A vulnerability exists in the ClearPass Policy Manager cluster communications that allow for an attacker in a privileged network position to potentially obtain sensitive information. A successful exploit could allow an attacker to retrieve information that allows for unauthorized actions as a privileged user on the ClearPass Policy Manager cluster in Aruba ClearPass Policy Manager version(s): ClearPass Policy Manager 6.10.x: 6.10.7 and below and ClearPass Policy Manager 6.9.x: 6.9.12 and below.

EPSS

Процентиль: 25%
0.00087
Низкий

4.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.7
nvd
около 3 лет назад

A vulnerability exists in the ClearPass Policy Manager cluster communications that allow for an attacker in a privileged network position to potentially obtain sensitive information. A successful exploit could allow an attacker to retrieve information that allows for unauthorized actions as a privileged user on the ClearPass Policy Manager cluster in Aruba ClearPass Policy Manager version(s): ClearPass Policy Manager 6.10.x: 6.10.7 and below and ClearPass Policy Manager 6.9.x: 6.9.12 and below.

EPSS

Процентиль: 25%
0.00087
Низкий

4.5 Medium

CVSS3

Дефекты

CWE-200