hp aruba-clearpass-policy-manager CVE-2018-7058 is a vulnerability in HP Aruba Clearpass Policy Manager
Published on August 6, 2018

Aruba ClearPass, all versions of 6.6.x prior to 6.6.9 are affected by an authentication bypass vulnerability, an attacker can leverage this vulnerability to gain administrator privileges on the system. The vulnerability is exposed only on ClearPass web interfaces, including administrative, guest captive portal, and API. Customers who do not expose ClearPass web interfaces to untrusted users are impacted to a lesser extent.

NVD


Products Associated with CVE-2018-7058

Want to know whenever a new CVE is published for HP Aruba Clearpass Policy Manager? stack.watch will email you.

 

Affected Versions

Hewlett Packard Enterprise Aruba ClearPass Version 6.6.x prior to 6.6.9 and 6.7.x prior to 6.7.1 is affected by CVE-2018-7058

Exploit Probability

EPSS
0.87%
Percentile
74.97%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.