CVE-2026-79810: Authenticated Remote Code Execution Vulnerabilities in HPE Networking ClearPass Policy Manager
Published Oct 6, 2026
·Updated
Remote code execution vulnerabilities exist in the affected interface of HPE Networking ClearPass Policy Manager that could allow an authenticated remote attacker with high privileges to execute arbitrary code. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.
Affected Software
1 affected component
HPE ClearPass Policy Manager
Event History
Oct 6, 2026
CVE Published
via MITRE·07:17 PM
Data Sourced
via MITRE·07:17 PM
DescriptionSeverity
Data Sourced
via NVD·08:17 PM
DescriptionSeverity
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
An attacker must be authenticated to the affected interface and have high privileges. The attack can be performed remotely and does not require user interaction.
2
What is the likely impact if exploitation succeeds?
Successful exploitation allows arbitrary code execution and arbitrary commands on the underlying operating system. This can affect confidentiality, integrity, and availability.