CVE-2026-79805
Received
Received - Intake
Authenticated Path Traversal in ClearPass Policy Manager
Vulnerability report for CVE-2026-79805, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-10-06
Last updated on: 2026-10-06
Assigner: Hewlett Packard Enterprise (HPE)
Description
Description
An authenticated path traversal vulnerability exists in ClearPass Policy Manager. Successful exploitation could allow an attacker to read and modify certain files on the underlying operating system.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| Hewlett | Packard | Enterprise (HPE) ClearPass Policy Manager (CPPM) 6.14.0 |
| Hewlett | Packard | Enterprise (HPE) ClearPass Policy Manager (CPPM) 6.11.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |