CVE-2015-4649: Arubanetworks Clearpass

High severity, CVSS 7.2. EPSS: 1.7% chance of exploitation in the next 30 days.

Aruba Networks ClearPass Policy Manager before 6.4.7 and 6.5.x before 6.5.2 allows remote authenticated administrators to gain root privileges via unspecified vectors, a different vulnerability than CVE-2015-3654.

Affected products

  • Arubanetworks Clearpass: up to and including 6.4.6; version 6.5 only; version 6.5.1 only

Published 2017-08-29. Last modified 2026-06-17.