Sensitive Data Exposure in HPE Aruba Networking ClearPass Policy Manager
CVE-2025-23060
8.1HIGH
What is CVE-2025-23060?
The HPE Aruba Networking ClearPass Policy Manager has a vulnerability that may allow sensitive unencrypted information to be exposed in specific scenarios. This security flaw could enable an attacker to launch a man-in-the-middle attack, which poses a risk of unauthorized access to network resources and facilitates data tampering activities, compromising overall network integrity.
Affected Version(s)
HPE Aruba Networking ClearPass Policy Manager 6.12.0
HPE Aruba Networking ClearPass Policy Manager 6.12.0
HPE Aruba Networking ClearPass Policy Manager 6.11.0