CVE-2024-51771: Arubanetworks Clearpass Policy Manager
High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.
A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote threat actor to conduct a remote code execution attack. Successful exploitation could enable the attacker to run arbitrary commands on the underlying operating system.
Affected products
- Arubanetworks Clearpass Policy Manager: from 6.11.0, before 6.11.10 (fixed in 6.11.10); from 6.12.0, before 6.12.3 (fixed in 6.12.3)
Published 2024-12-03. Last modified 2026-06-17.