CVE-2026-79803: Authenticated Command Injection Leading to Privilege Escalation in ClearPass Policy Manager API
Published Oct 6, 2026
·Updated
A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the affected system.
Affected Software
1 affected component
Aruba Networks ClearPass Policy Manager
Event History
Oct 6, 2026
CVE Published
via MITRE·07:17 PM
Data Sourced
via MITRE·07:17 PM
DescriptionSeverity
Data Sourced
via NVD·08:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need before attempting exploitation?
The attacker must be authenticated and have low-level privileges. The attack can be performed remotely against the API.
2
Does exploitation require user interaction or complex preconditions?
No user interaction is required. The CVSS vector indicates low attack complexity, so an authenticated attacker does not need complex conditions to attempt exploitation.