CVE-2026-79811: Authenticated SQL Injection allows Remote Code Execution in ClearPass Policy Manager API
A SQL injection vulnerability in the API of ClearPass Policy Manager could allow a remote authenticated attacker with administrative privileges to conduct SQL injection attacks against the ClearPass Policy Manager instance. Successful exploitation could allow an attacker to execute arbitrary database commands.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
A remote attacker must already be authenticated to the ClearPass Policy Manager API and have administrative privileges. The provided information does not indicate that lower-privileged or unauthenticated users can exploit it.
What level of access could successful exploitation provide?
Successful exploitation allows SQL injection against the ClearPass Policy Manager instance and may permit execution of arbitrary database commands. The stated impact includes high confidentiality, integrity, and availability impact.