CVE-2022-23675: XSS
A remote authenticated stored cross-site scripting (xss) vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and below, 6.9.9 and below, 6.8.9-HF2 and below, 6.7.x and below. Aruba has released updates to ClearPass Policy Manager that address this security vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-23675?
The severity of CVE-2022-23675 is medium with a severity value of 4.8.
Which version(s) of Aruba ClearPass Policy Manager are affected by CVE-2022-23675?
Aruba ClearPass Policy Manager version 6.10.4 and below, 6.9.9 and below, 6.8.9-HF2 and below, and 6.7.x and below are affected by CVE-2022-23675.
What is the vulnerability type of CVE-2022-23675?
CVE-2022-23675 is a remote authenticated stored cross-site scripting (XSS) vulnerability.
How can I fix CVE-2022-23675?
To fix CVE-2022-23675, it is recommended to update Aruba ClearPass Policy Manager to the latest version provided by Aruba.
Where can I find more information about CVE-2022-23675?
More information about CVE-2022-23675 can be found at the following reference link: [CVE-2022-23675](https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2022-007.txt).