CVE-2018-7065
CVE-2018-7065
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS —EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
07 dez 2018Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
An authenticated SQL injection vulnerability in Aruba ClearPass Policy Manager can lead to privilege escalation. All versions of ClearPass are affected by multiple authenticated SQL injection vulnerabilities. In each case, an authenticated administrative user of any type could exploit this vulnerability to gain access to "appadmin" credentials, leading to complete cluster compromise. Resolution: Fixed in 6.7.6 and 6.6.10-hotfix.
Produtos afetados
Hewlett Packard Enterprise · Aruba ClearPass Policy ManagerQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →