Security Advisory

CVE-2018-7058

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-08-06 20:00:00
Last updated 2024-08-05 06:17:17
Assigner hpe
State PUBLISHED

Description

Aruba ClearPass, all versions of 6.6.x prior to 6.6.9 are affected by an authentication bypass vulnerability, an attacker can leverage this vulnerability to gain administrator privileges on the system. The vulnerability is exposed only on ClearPass web interfaces, including administrative, guest captive portal, and API. Customers who do not expose ClearPass web interfaces to untrusted users are impacted to a lesser extent.