The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon successful bypass an attacker could then execute an exploit that would allow to remote command execution in the underlying operating system. Resolution: Fixed in 6.7.13-HF, 6.8.5-HF, 6.8.6, 6.9.1 and higher.
| Software | From | Fixed in |
|---|---|---|
| arubanetworks / clearpass_policy_manager | 6.7.0 | 6.7.13.x |
| arubanetworks / clearpass_policy_manager | 6.8.0 | 6.8.6 |
| arubanetworks / clearpass_policy_manager | 6.9.0 | 6.9.1 |