Vulnerability Details CVE-2020-7113
A vulnerability was found when an attacker, while communicating with the ClearPass management interface, is able to intercept and change parameters in the HTTP packets resulting in the compromise of some of ClearPass' service accounts. Resolution: Fixed in 6.7.10, 6.8.1, 6.9.0 and higher.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.9%
CVSS Severity
CVSS v3 Score 4.9
CVSS v2 Score 4.0
Products affected by CVE-2020-7113
-
cpe:2.3:a:arubanetworks:clearpass:6.7.0
-
cpe:2.3:a:arubanetworks:clearpass:6.7.1
-
cpe:2.3:a:arubanetworks:clearpass:6.7.10
-
cpe:2.3:a:arubanetworks:clearpass:6.7.11
-
cpe:2.3:a:arubanetworks:clearpass:6.7.12
-
cpe:2.3:a:arubanetworks:clearpass:6.7.2
-
cpe:2.3:a:arubanetworks:clearpass:6.7.3
-
cpe:2.3:a:arubanetworks:clearpass:6.7.4
-
cpe:2.3:a:arubanetworks:clearpass:6.7.5
-
cpe:2.3:a:arubanetworks:clearpass:6.7.6
-
cpe:2.3:a:arubanetworks:clearpass:6.7.7
-
cpe:2.3:a:arubanetworks:clearpass:6.7.8
-
cpe:2.3:a:arubanetworks:clearpass:6.7.9
-
cpe:2.3:a:arubanetworks:clearpass:6.8.0
-
cpe:2.3:a:arubanetworks:clearpass:6.8.1
-
cpe:2.3:a:arubanetworks:clearpass:6.8.2
-
cpe:2.3:a:arubanetworks:clearpass:6.8.3