CVE-2026-79803highCWE-77

CVE-2026-79803: high-severity vulnerability in Hewlett Packard Enterprise (HPE) ClearPass…

Authenticated Command Injection Leading to Privilege Escalation in ClearPass Policy Manager API

Published · Updated

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.8epss 0.7%
exploitation probability
0.7%top 47% of all CVEs
observed exploitation
nono source reports it
A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the affected system.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H