VYPR
Medium severity4.9NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026

CVE-2020-7113

CVE-2020-7113

Description

A vulnerability was found when an attacker, while communicating with the ClearPass management interface, is able to intercept and change parameters in the HTTP packets resulting in the compromise of some of ClearPass' service accounts. Resolution: Fixed in 6.7.10, 6.8.1, 6.9.0 and higher.

Affected products

3
  • cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:arubanetworks:clearpass:*:*:*:*:*:*:*:*range: >=6.7.0,<6.7.13
    • (no CPE)range: before 6.7.10, before 6.8.1, before 6.9.0
  • ClearPass/ClearPassdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.