CVE-2018-7067
CVE-2018-7067
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS —EPSS 1.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
07 dez 2018Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
A Remote Authentication bypass in Aruba ClearPass Policy Manager leads to complete cluster compromise. An authentication flaw in all versions of ClearPass could allow an attacker to compromise the entire cluster through a specially crafted API call. Network access to the administrative web interface is required to exploit this vulnerability. Resolution: Fixed in 6.7.6 and 6.6.10-hotfix.
Produtos afetados
Hewlett Packard Enterprise · Aruba ClearPass Policy ManagerQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →