High severity7.2NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026
CVE-2020-7111
CVE-2020-7111
Description
A server side injection vulnerability exists which could allow an authenticated administrative user to achieve Remote Code Execution in ClearPass. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.
Affected products
4cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*range: >=6.7.0,<6.7.13
- (no CPE)range: before 6.7.13, before 6.8.4, before 6.9.0
- ClearPass/ClearPassdescription
Patches
Vulnerability mechanics
References
1- www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-004.txtnvdVendor Advisory
News mentions
0No linked articles in our index yet.