CVE-2021-34612: OS Command Injection
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to 6.10.0, 6.9.6 and 6.8.9. Aruba has released updates to ClearPass Policy Manager that address this security vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-34612?
CVE-2021-34612 is classified as a high-severity vulnerability due to its potential for remote arbitrary command execution.
How do I fix CVE-2021-34612?
To fix CVE-2021-34612, upgrade Aruba ClearPass Policy Manager to version 6.10.0 or later.
What versions of Aruba ClearPass Policy Manager are affected by CVE-2021-34612?
CVE-2021-34612 affects Aruba ClearPass Policy Manager versions prior to 6.10.0, including 6.9.6 and 6.8.9.
What are the consequences of exploiting CVE-2021-34612?
Exploiting CVE-2021-34612 allows attackers to execute arbitrary commands on the affected system remotely.
Is there a patch available for CVE-2021-34612?
Yes, a patch is available through the updates released by Aruba for ClearPass Policy Manager.