PT-2026-107189 · Hewlett Packard · Clearpass Policy Manager
CVE-2026-76750
·
Published
2026-10-06
·
Updated
2026-10-07
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
HPE Networking ClearPass Policy Manager versions prior to 6.14.1
Description
Deserialization of untrusted data in the web interface allows an unauthenticated remote attacker to execute arbitrary code on the affected system. Deserialization is the process of converting a data stream back into an object, which can be exploited if the input is not properly validated.
Recommendations
Upgrade to version 6.14.1.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Clearpass Policy Manager