CVE-2023-43506

A vulnerability in the ClearPass OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges to those of a higher role. A successful exploit allows malicious users to execute arbitrary code with root level privileges on the Linux instance.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
OR cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.9.13:-:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.9.13:cumulative_hotfix_patch_2:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.9.13:cumulative_hotfix_patch_3:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.10.8:-:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.10.8:cumulative_hotfix_patch_2:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.10.8:cumulative_hotfix_patch_5:*:*:*:*:*:*

History

11 Sep 2024, 18:35

Type Values Removed Values Added
New CVE

Information

Published : 2023-10-25 18:17

Updated : 2024-09-11 18:35


NVD link : CVE-2023-43506

Mitre link : CVE-2023-43506

CVE.ORG link : CVE-2023-43506


JSON object : View

Products Affected

arubanetworks

  • clearpass_policy_manager

linux

  • linux_kernel
CWE
NVD-CWE-noinfo CWE-269

Improper Privilege Management