Description

A vulnerability in the ClearPass Policy Manager web-based management interface allows a low-privileged (read-only) authenticated remote attacker to gain unauthorized access to data and the ability to execute functions that should be restricted to administrators only with read/write privileges. Successful exploitation could enable a low-privileged user to execute administrative functions leading to an escalation of privileges.

INFO

Published Date :

2025-02-04T18:07:56.711Z

Last Modified :

2025-03-13T13:28:04.186Z

Source :

hpe
AFFECTED PRODUCTS

The following products are affected by CVE-2025-23058 vulnerability.

Vendors Products
Arubanetworks
  • Clearpass Policy Manager
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-23058.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact