Required CVE Record Information
Description
Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 does not disable the troubleshooting and diagnostics page in production systems, which allows remote attackers to obtain version numbers, module configuration, and other sensitive information by reading the page.
References 2 Total
- secunia.com: 61916 third-party-advisory
- http://www.arubanetworks.com/support/alerts/aid-10282014.txt
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- secunia.com: 61916 third-party-advisoryx_transferred
- http://www.arubanetworks.com/support/alerts/aid-10282014.txt x_transferred