VYPR
High severity7.2NVD Advisory· Published Jun 3, 2020· Updated Jun 17, 2026

CVE-2020-7117

CVE-2020-7117

Description

The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated to the administrative interface, they could then exploit the system, leading to remote command execution in the underlying operating system. Resolution: Fixed in 6.7.13-HF, 6.8.5-HF, 6.8.6, 6.9.1 and higher.

Affected products

3
  • cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*range: >=6.7.0,<=6.7.13
    • (no CPE)range: before 6.7.13-HF, 6.8.5-HF, 6.8.6, 6.9.1
  • ClearPass/ClearPass Policy Managerdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.