CVE-2026-76751: fallo crítico en Hewlett Packard Enterprise (HPE) ClearPass…
Missing Integrity Verification in the OnGuard Agent of ClearPass Policy Manager Allows Unauthenticated Remote Code Execution
Publicada el · Actualizada el
28Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 9.8epss 0.5%
probabilidad de explotación
0.5%top 57% de las CVE
explotación observada
noninguna fuente lo reporta
A missing integrity verification vulnerability exists in the OnGuard agent of ClearPass Policy Manager. Successful exploitation could allow an unauthenticated, remote attacker to execute arbitrary code on the affected endpoint with the elevated privileges of the agent.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Hewlett Packard Enterprise (HPE) · ClearPass Policy Manager (CPPM)CVEs relacionadas — Hewlett Packard Enterprise (HPE) ClearPass…
En el mismo producto, de las más peligrosas a las menos.
CVE-2026-79802HIGHCommand Injection Vulnerability in the ClearPass Policy Manager Client SoftwareEPSS 1.1%CVE-2026-73769HIGHAuthenticated Remote Code Execution in CPPM Web InterfaceEPSS 1.1%CVE-2026-73787HIGHAuthenticated Arbitrary File Write allows Remote Code Execution via CPPM Web InterfaceEPSS 0.8%CVE-2026-79803HIGHAuthenticated Command Injection Leading to Privilege Escalation in ClearPass Policy Manager APIEPSS 0.7%CVE-2026-79801CRITICALUnauthenticated Missing Integrity Verification allows Remote Code Execution in ClearPass Policy Manager Client AgentEPSS 0.6%CVE-2026-79815MEDIUMAuthenticated Command Injection Vulnerability in the ClearPass Policy Manager OnGuard AgentEPSS 0.6%