Privilege Escalation Vulnerability in ClearPass Policy Manager by HPE
CVE-2025-23058
8.1HIGH
What is CVE-2025-23058?
A critical vulnerability in the ClearPass Policy Manager web-based management interface permits low-privileged authenticated users to exploit unauthorized access. This allows such users to execute functions typically restricted to administrators, including the ability to alter settings and access sensitive data. The successful exploitation of this vulnerability could lead to an escalation of privileges, compromising the security of the system.
Affected Version(s)
HPE Aruba Networking ClearPass Policy Manager 6.12.0
HPE Aruba Networking ClearPass Policy Manager 6.12.0
HPE Aruba Networking ClearPass Policy Manager 6.11.0