VYPR
Medium severity4.8NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026

CVE-2020-7110

CVE-2020-7110

Description

ClearPass is vulnerable to Stored Cross Site Scripting by allowing a malicious administrator, or a compromised administrator account, to save malicious scripts within ClearPass that could be executed resulting in a privilege escalation attack. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.

Affected products

3
  • cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*range: >=6.7.0,<6.7.13
    • (no CPE)range: before 6.7.13, before 6.8.4, before 6.9.0
  • ClearPass/ClearPassdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.