CVE-2024-5486

A vulnerability exists in ClearPass Policy Manager that allows for an attacker with administrative privileges to access sensitive information in a cleartext format. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further access to network services supported by ClearPass Policy Manager
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.0:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.1:*:*:*:*:*:*:*

History

11 Sep 2024, 14:23

Type Values Removed Values Added
First Time Arubanetworks
Arubanetworks clearpass Policy Manager
CVSS v2 : unknown
v3 : 5.8
v2 : unknown
v3 : 4.9
References () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04675en_us&docLocale=en_US - () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04675en_us&docLocale=en_US - Vendor Advisory
CPE cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.0:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.12.1:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

31 Jul 2024, 12:57

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad en ClearPass Policy Manager que permite que un atacante con privilegios administrativos acceda a información confidencial en formato de texto plano. Un exploit exitoso permite a un atacante recuperar información que podría usarse para potencialmente obtener mayor acceso a los servicios de red compatibles con ClearPass Policy Manager.

30 Jul 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-30 17:15

Updated : 2024-09-11 14:23


NVD link : CVE-2024-5486

Mitre link : CVE-2024-5486

CVE.ORG link : CVE-2024-5486


JSON object : View

Products Affected

arubanetworks

  • clearpass_policy_manager