A vulnerability in the ClearPass Policy Manager web-based...
High severity
Unreviewed
Published
Feb 4, 2025
to the GitHub Advisory Database
•
Updated Mar 13, 2025
Description
Published by the National Vulnerability Database
Feb 4, 2025
Published to the GitHub Advisory Database
Feb 4, 2025
Last updated
Mar 13, 2025
A vulnerability in the ClearPass Policy Manager web-based management interface allows a low-privileged (read-only) authenticated remote attacker to gain unauthorized access to data and the ability to execute functions that should be restricted to administrators only with read/write privileges. Successful exploitation could enable a low-privileged user to execute administrative functions leading to an escalation of privileges.
References