Vulnerabilities (CVE)

Filtered by vendor Hp Subscribe
Filtered by product Aruba Clearpass Policy Manager
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-5827 1 Hp 1 Aruba Clearpass Policy Manager 2019-03-11 3.5 LOW 5.4 MEDIUM
A reflected cross site scripting vulnerability in HPE Aruba ClearPass Policy Manager version 6.6.x was found.
CVE-2017-9002 1 Hp 1 Aruba Clearpass Policy Manager 2018-10-18 4.3 MEDIUM 6.1 MEDIUM
All versions of Aruba ClearPass prior to 6.6.8 contain reflected cross-site scripting vulnerabilities. By exploiting this vulnerability, an attacker who can trick a logged-in ClearPass administrative user into clicking a link could obtain sensitive information, such as session cookies or passwords. The vulnerability requires that an administrative users click on the malicious link while currently logged into ClearPass in the same browser.