Aruba ClearPass CSRF Vulnerability: Unauthorized Actions on Web Admin Interface

Aruba ClearPass CSRF Vulnerability: Unauthorized Actions on Web Admin Interface

CVE-2018-7060 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Aruba ClearPass 6.6.x prior to 6.6.9 and 6.7.x prior to 6.7.1 is vulnerable to CSRF attacks against authenticated users. An attacker could manipulate an authenticated user into performing actions on the web administrative interface.

Learn more about our Web App Pen Testing.