CVE-2026-79810
Received
Received - Intake
Remote Code Execution in HPE ClearPass Policy Manager
Vulnerability report for CVE-2026-79810, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-10-06
Last updated on: 2026-10-06
Assigner: Hewlett Packard Enterprise (HPE)
Description
Description
Remote code execution vulnerabilities exist in the affected interface of HPE Networking ClearPass Policy Manager that could allow an authenticated remote attacker with high privileges to execute arbitrary code. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| Hewlett | Packard | Enterprise (HPE) ClearPass Policy Manager (CPPM) 6.14.0 |
| Hewlett | Packard | Enterprise (HPE) ClearPass Policy Manager (CPPM) 6.11.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |