Aruba Update
2989Warning Date
Severity Level
Warning Number
Target Sector
15 April, 2020
● High
2020-1138
All
Description:
Aruba has released security update to address vulnerabilities in the following products:
- ClearPass 6.8.x prior to 6.8.4
- ClearPass 6.7.x prior to 6.7.13
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Authentication bypass
- Execute arbitrary code - remotely
- Cross-site scripting (XSS)
- Unauthorized disclosure of information
Best practice and Recommendations:
The CERT team encourages users to review Aruba security advisory and apply the necessary update: