Vulnerabilities
Vulnerable Software
Aruba ClearPass Policy Manager before 6.5.7 and 6.6.x before 6.6.2 allows attackers to obtain database credentials.
CVSS Score
9.8
EPSS Score
0.005
Published
2019-11-06
Aruba ClearPass 6.6.x prior to 6.6.9 and 6.7.x prior to 6.7.1 is vulnerable to CSRF attacks against authenticated users. An attacker could manipulate an authenticated user into performing actions on the web administrative interface.
CVSS Score
8.8
EPSS Score
0.002
Published
2018-08-06
Shibboleth XMLTooling-C before 1.6.4, as used in Shibboleth Service Provider before 2.6.1.4 on Windows and other products, mishandles digital signatures of user data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via crafted XML data. NOTE: this issue exists because of an incomplete fix for CVE-2018-0486.
CVSS Score
6.5
EPSS Score
0.004
Published
2018-02-27
SQL injection vulnerability in ClearPass Policy Manager 6.5.x through 6.5.6 and 6.6.0.
CVSS Score
9.8
EPSS Score
0.003
Published
2017-06-08


Contact Us

Shodan ® - All rights reserved