CVE-2014-6624: Infoleak
Published Nov 19, 2014
·Updated
The Insight module in Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 allows remote authenticated users to read arbitrary files via unspecified vectors.
Affected Software
2 affected components
Arubanetworks Clearpass<=6.3.4
Arubanetworks Clearpass=6.4.0
Event History
Nov 19, 2014
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-6624?
CVE-2014-6624 has a CVSS base score indicating a high severity due to its potential for unauthorized file access.
2
How do I fix CVE-2014-6624?
To fix CVE-2014-6624, upgrade to Aruba Networks ClearPass version 6.3.6 or 6.4.1 or later.
3
Who is affected by CVE-2014-6624?
CVE-2014-6624 affects remote authenticated users of Aruba Networks ClearPass versions prior to 6.3.6 and 6.4.1.
4
What kind of vulnerability is CVE-2014-6624?
CVE-2014-6624 is a security vulnerability that allows remote authenticated users to read arbitrary files.
5
When was CVE-2014-6624 disclosed?
CVE-2014-6624 was disclosed on October 28, 2014.