Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 does not disable the troubleshooting and diagnostics page in production systems, which allows remote attackers to obtain version numbers, module configuration, and other sensitive information by reading the page.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-11-19T18:00:00

Updated: 2014-11-19T17:57:01

Reserved: 2014-09-19T00:00:00


Link: CVE-2014-6621

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2014-11-19T18:59:01.453

Modified: 2014-11-19T19:16:23.003


Link: CVE-2014-6621

JSON object: View

cve-icon Redhat Information

No data.

CWE