CVE-2015-4650: Critical severity aruba clearpass policy manager vulnerability
Published Oct 16, 2017
·Updated
Aruba Networks ClearPass Policy Manager before 6.4.7 and 6.5.x before 6.5.2 allows remote attackers to gain shell access and execute arbitrary code with root privileges via unspecified vectors.
Affected Software
3 affected components
Arubanetworks Clearpass Policy Manager<=6.4.6
Arubanetworks Clearpass Policy Manager=6.5.0
Arubanetworks Clearpass Policy Manager=6.5.1
Event History
Oct 16, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4650?
CVE-2015-4650 has been assigned a high severity rating due to the potential for remote code execution with root privileges.
2
How do I fix CVE-2015-4650?
To fix CVE-2015-4650, upgrade your Aruba ClearPass Policy Manager to version 6.4.7 or 6.5.2 or later.
3
What systems are affected by CVE-2015-4650?
CVE-2015-4650 affects Aruba ClearPass Policy Manager versions prior to 6.4.7 and 6.5.0 and 6.5.1.
4
Can CVE-2015-4650 be exploited remotely?
Yes, CVE-2015-4650 can be exploited remotely by attackers to gain shell access.
5
What type of vulnerability is CVE-2015-4650?
CVE-2015-4650 is a security vulnerability that allows remote attackers to execute arbitrary code.