A vulnerability was found when an attacker, while communicating with the ClearPass management interface, is able to intercept and change parameters in the HTTP packets resulting in the compromise of some of ClearPass' service accounts. Resolution: Fixed in 6.7.10, 6.8.1, 6.9.0 and higher.
References
Link | Resource |
---|---|
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-004.txt | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: hpe
Published: 2020-04-16T16:14:37
Updated: 2020-04-16T16:14:37
Reserved: 2020-01-16T00:00:00
Link: CVE-2020-7113
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-04-16T19:15:34.510
Modified: 2021-07-21T11:39:23.747
Link: CVE-2020-7113
JSON object: View
Redhat Information
No data.
CWE