Aruba
Aruba Clearpass Policy Manager: vulnerabilidades y CVE
Aruba Clearpass Policy Manager tiene 13 vulnerabilidades publicadas, 13 de ellas en los últimos 12 meses. 5 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE13
Últimos 12 meses13
Críticas5
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-79818 | Media (5.3) | — | — | 6 oct 2026 | A vulnerability in an API interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attacker to obtain… |
| CVE-2026-79815 | Media (6.5) | — | — | 6 oct 2026 | A command injection vulnerability in the OnGuard agent of ClearPass Policy Manager could allow an authenticated remote attacker to inject arbitrary commands. Successful exploitation could allow an attacker to execute… |
| CVE-2026-79814 | Media (6.7) | — | — | 6 oct 2026 | An arbitrary file write vulnerability in the ClearPass Policy Manager OnGuard agent could allow malicious users on a local instance to elevate their user privileges if certain preconditions outside of the attacker's… |
| CVE-2026-79811 | Alta (7.2) | — | — | 6 oct 2026 | A SQL injection vulnerability in the API of ClearPass Policy Manager could allow a remote authenticated attacker with administrative privileges to conduct SQL injection attacks against the ClearPass Policy Manager… |
| CVE-2026-79808 | Alta (7.8) | — | — | 6 oct 2026 | A buffer overflow vulnerability exists in the OnGuard agent of ClearPass Policy Manager. Successful exploitation could allow an authenticated local user to execute arbitrary code with elevated privileges on the affected… |
| CVE-2026-79807 | Alta (7.8) | — | — | 6 oct 2026 | A missing integrity verification vulnerability in the Windows client software for ClearPass Policy Manager could allow malicious users on a local instance to elevate their user privileges. A successful exploit could… |
| CVE-2026-79803 | Alta (8.8) | — | — | 6 oct 2026 | A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the… |
| CVE-2026-79799 | Alta (8.8) | — | — | 6 oct 2026 | A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of… |
| CVE-2026-79798 | Crítica (9.9) | — | — | 6 oct 2026 | SQL injection vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow a low-privileged authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy… |
| CVE-2026-79796 | Crítica (9.8) | — | — | 6 oct 2026 | Vulnerabilities have been identified in the affected interface of ClearPass Policy Manager that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful… |
| CVE-2026-79794 | Crítica (9.1) | — | — | 6 oct 2026 | A SQL injection vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager… |
| CVE-2026-76754 | Crítica (9.8) | — | — | 6 oct 2026 | A vulnerability in an affected interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. Successful exploitation… |
| CVE-2026-76751 | Crítica (9.8) | — | — | 6 oct 2026 | A missing integrity verification vulnerability exists in the OnGuard agent of ClearPass Policy Manager. Successful exploitation could allow an unauthenticated, remote attacker to execute arbitrary code on the affected… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.