CVE-2014-8367

SQL injection vulnerability in Aruba Networks ClearPass Policy Manager (CPPM) 6.2.x, 6.3.x before 6.3.6, and 6.4.x before 6.4.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:arubanetworks:clearpass_policy_manager:6.2:*:*:*:*:*:*:*

History

21 Nov 2024, 02:18

Type Values Removed Values Added
References () http://secunia.com/advisories/62602 - Third Party Advisory () http://secunia.com/advisories/62602 - Third Party Advisory
References () http://www.arubanetworks.com/support/alerts/aid-11192014.txt - Broken Link, Vendor Advisory () http://www.arubanetworks.com/support/alerts/aid-11192014.txt - Broken Link, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/98870 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/98870 - Third Party Advisory, VDB Entry

Information

Published : 2014-11-25 15:59

Updated : 2024-11-21 02:18


NVD link : CVE-2014-8367

Mitre link : CVE-2014-8367

CVE.ORG link : CVE-2014-8367


JSON object : View

Products Affected

arubanetworks

  • clearpass_policy_manager
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')