CVE-2024-41916

A vulnerability exists in ClearPass Policy Manager that allows for an attacker with administrative privileges to access sensitive information in a cleartext format. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further access to network services supported by ClearPass Policy Manager.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.0:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.1:*:*:*:*:*:*:*

History

11 Sep 2024, 14:25

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.8
v2 : unknown
v3 : 4.9
CWE NVD-CWE-noinfo
References () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04675en_us&docLocale=en_US - () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04675en_us&docLocale=en_US - Vendor Advisory
First Time Arubanetworks
Arubanetworks clearpass Policy Manager
CPE cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.0:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.1:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*

31 Jul 2024, 12:57

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad en ClearPass Policy Manager que permite que un atacante con privilegios administrativos acceda a información confidencial en formato de texto plano. Un exploit exitoso permite a un atacante recuperar información que podría usarse para obtener acceso adicional a los servicios de red compatibles con ClearPass Policy Manager.

30 Jul 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-30 17:15

Updated : 2024-10-28 21:35


NVD link : CVE-2024-41916

Mitre link : CVE-2024-41916

CVE.ORG link : CVE-2024-41916


JSON object : View

Products Affected

arubanetworks

  • clearpass_policy_manager