CVE-2015-3656: Arubanetworks Clearpass
High severity, CVSS 7.2. EPSS: 1.1% chance of exploitation in the next 30 days.
Aruba Networks ClearPass Policy Manager before 6.4.7 and 6.5.x before 6.5.2 allows remote authenticated lower-level administrators to gain privileges by leveraging failure to properly enforce authorization checks.
Affected products
- Arubanetworks Clearpass: up to and including 6.4.6; version 6.5 only; version 6.5.1 only
Published 2017-08-29. Last modified 2026-06-17.