Description
A vulnerability in the web-based management interface of HPE Aruba Networking ClearPass Policy Manager (CPPM) allows remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as a lower privileged user on the underlying operating system.
Product status
6.12.0 (semver)
6.11.0 (semver)
Credits
Daniel Jensen (@Dozernz)
References
support.hpe.com/...y?docId=hpesbnw04784en_us&docLocale=en_US