PT-2022-16166 · Aruba · Aruba Clearpass Policy Manager

Published

2022-05-16

·

Updated

2023-08-08

·

CVE-2022-23657

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Aruba ClearPass Policy Manager versions 6.10.4 and below Aruba ClearPass Policy Manager versions 6.9.9 and below Aruba ClearPass Policy Manager versions 6.8.9-HF2 and below Aruba ClearPass Policy Manager versions 6.7.x and below
Description A remote authentication bypass issue was discovered. Aruba has released updates to address this security issue.
Recommendations For versions 6.10.4 and below, update to a version above 6.10.4. For versions 6.9.9 and below, update to a version above 6.9.9. For versions 6.8.9-HF2 and below, update to a version above 6.8.9-HF2. For versions 6.7.x and below, update to a version above 6.7.x.

Fix

Related Identifiers

CVE-2022-23657

Affected Products

Aruba Clearpass Policy Manager