Loading HuntDB...

GHSA-chjv-79m6-ph9c

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote Attacker to conduct a stored cross-site scripting (XSS) attack. Successful exploitation could enable a threat actor to perform any actions the user is authorized to do, including accessing the user's data and altering information within the user's permissions. This could lead to data modification, deletion, or theft, including unauthorized access to files, file deletion, or the theft of session cookies, which an attacker could use to hijack a user's session.

Related CVEs

Key Information

GHSA ID
GHSA-chjv-79m6-ph9c
Published
December 3, 2024 9:31 PM
Last Modified
December 3, 2024 9:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 4, 2025 6:33 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.