CVE-2014-6625: Critical severity aruba networks clearpass vulnerability
Published Nov 19, 2014
·Updated
The Policy Manager in Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 allows remote authenticated users to gain privileges via unspecified vectors.
Affected Software
2 affected components
Arubanetworks Clearpass<=6.3.4
Arubanetworks Clearpass=6.4.0
Event History
Nov 19, 2014
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-6625?
CVE-2014-6625 has a high severity rating due to the potential for privilege escalation by remote authenticated users.
2
How do I fix CVE-2014-6625?
To fix CVE-2014-6625, upgrade Aruba Networks ClearPass to version 6.3.6 or later, or 6.4.1 or later.
3
What versions are affected by CVE-2014-6625?
CVE-2014-6625 affects Aruba Networks ClearPass versions prior to 6.3.6 and 6.4.0.
4
What type of vulnerability is CVE-2014-6625?
CVE-2014-6625 is a privilege escalation vulnerability that allows unauthorized access under specific conditions.
5
Who is impacted by CVE-2014-6625?
Organizations using vulnerable versions of Aruba Networks ClearPass are at risk of privilege escalation attacks.