Aruba Networks ClearPass Policy Manager是美国安移通(Aruba Networks)公司的一个应用系统提供无线网络安全接入管理系统 Aruba Networks ClearPass Policy Manager 存在安全漏洞,该漏洞源于基于 Web 的管理界面可能允许经过身份验证的远程攻击者对 ClearPass Policy Manager 实例进行 SQL 注入攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | Aruba ClearPass Policy Manager | ClearPass Policy Manager 6.11.x: 6.11.4 and below ~ <=6.11.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-43506 | 7.8 HIGH | Local Privilege Escalation in ClearPass OnGuard Linux Agent |
| CVE-2023-43508 | 6.3 MEDIUM | Authorization Bypass Leading to Privilege Escalation in ClearPass Policy Manager Web-Based |
| CVE-2023-43509 | 5.8 MEDIUM | Unauthenticated Endpoint Allows Sending Arbitrary OnGuard Notifications |
| CVE-2023-43510 | 4.7 MEDIUM | Authenticated Remote Command Injection in ClearPass Policy Manager Web-Based Management In |
No comments yet