CVE Database
/

CVE-2020-7114

Back to search

CVE-2020-7114

Published: Apr 16, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

A vulnerability exists allowing attackers, when present in the same network segment as ClearPass' management interface, to make changes to certain databases in ClearPass by crafting HTTP packets. As a result of this attack, a possible complete cluster compromise might occur. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.

VendorProductVersions

n/a

ClearPass Policy Manager

affected
ClearPass 6.8.x prior to 6.8.5 ClearPass 6.7.x prior to 6.7.13

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now