CVE-2018-7065
CVE-2018-7065
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
07 dic 2018Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
An authenticated SQL injection vulnerability in Aruba ClearPass Policy Manager can lead to privilege escalation. All versions of ClearPass are affected by multiple authenticated SQL injection vulnerabilities. In each case, an authenticated administrative user of any type could exploit this vulnerability to gain access to "appadmin" credentials, leading to complete cluster compromise. Resolution: Fixed in 6.7.6 and 6.6.10-hotfix.
Productos afectados
Hewlett Packard Enterprise · Aruba ClearPass Policy Manager¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →