Critical severity9.8NVD Advisory· Published Jun 3, 2020· Updated Jun 17, 2026
CVE-2020-7115
CVE-2020-7115
Description
The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon successful bypass an attacker could then execute an exploit that would allow to remote command execution in the underlying operating system. Resolution: Fixed in 6.7.13-HF, 6.8.5-HF, 6.8.6, 6.9.1 and higher.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*range: >=6.7.0,<=6.7.13
- (no CPE)range: before 6.7.13-HF, 6.8.5-HF, 6.8.6, 6.9.1
- ClearPass/ClearPass Policy Managerdescription
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/158368/ClearPass-Policy-Manager-Unauthenticated-Remote-Command-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-005.txtnvdVendor Advisory
News mentions
0No linked articles in our index yet.