CVE-2023-43509: Unauthenticated Endpoint Allows Sending Arbitrary OnGuard Notifications
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to send notifications to computers that are running ClearPass OnGuard. These notifications can then be used to phish users or trick them into downloading malicious software.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-43509?
The severity of CVE-2023-43509 is medium.
How does CVE-2023-43509 affect ClearPass Policy Manager?
CVE-2023-43509 affects ClearPass Policy Manager versions up to 6.11.4.
How can an attacker exploit CVE-2023-43509?
An attacker can exploit CVE-2023-43509 by sending notifications to computers running ClearPass OnGuard to phish users or trick them into downloading malicious software.
Is there a fix for CVE-2023-43509?
Yes, upgrading to a version higher than 6.11.4 resolves the vulnerability.
Where can I find more information about CVE-2023-43509?
You can find more information about CVE-2023-43509 in the Aruba Networks security advisory: https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-016.txt