CVE-2022-23658: Critical severity aruba clearpass policy manager vulnerability
A remote authentication bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and below, 6.9.9 and below, 6.8.9-HF2 and below, 6.7.x and below. Aruba has released updates to ClearPass Policy Manager that address this security vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-23658.
What is the title of the vulnerability?
The title of the vulnerability is 'A remote authentication bypass vulnerability in Aruba ClearPass Policy Manager.'
What is the severity of CVE-2022-23658?
The severity of CVE-2022-23658 is critical.
Which versions of Aruba ClearPass Policy Manager are affected?
Aruba ClearPass Policy Manager versions 6.10.4 and below, 6.9.9 and below, 6.8.9-HF2 and below, and 6.7.x and below are affected.
How can I fix CVE-2022-23658?
Aruba has released updates to ClearPass Policy Manager that address this security vulnerability. It is recommended to update to the latest version available.
Where can I find more information about CVE-2022-23658?
More information about CVE-2022-23658 can be found at the following reference: [Aruba Security Advisory ARUBA-PSA-2022-007](https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2022-007.txt)