Medium severity4.8NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026
CVE-2020-7110
CVE-2020-7110
Description
ClearPass is vulnerable to Stored Cross Site Scripting by allowing a malicious administrator, or a compromised administrator account, to save malicious scripts within ClearPass that could be executed resulting in a privilege escalation attack. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.
Affected products
3cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*range: >=6.7.0,<6.7.13
- (no CPE)range: before 6.7.13, before 6.8.4, before 6.9.0
- ClearPass/ClearPassdescription
Patches
Vulnerability mechanics
References
1- www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-004.txtnvdVendor Advisory
News mentions
0No linked articles in our index yet.