Hewlett Packard Enterprise (HPE)
ClearPass Policy Manager (CPPM)
Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.
This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.
A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.
CVE-observed version history
| CVE | Published | Affected versions | Fixed version information | Publisher evidence |
|---|---|---|---|---|
| CVE-2026-79818 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79817 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79816 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79815 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79814 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79813 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79812 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79811 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79810 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79809 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79808 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79807 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79806 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79805 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79803 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79802 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79801 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79800 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above NOTE: This vulnerability is fixed in CPPM 6.14.1 only. It is not applicable to the 6.11.x branch. Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com | Update reference ↗ |
| CVE-2026-79799 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79798 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79797 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79796 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-79794 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-76754 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-76753 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-76752 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-76751 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-76750 | 6 Oct 2026 | ClearPass Policy Manager (CPPM): 6.14.0 ≤ 6.14.0, 6.11.0 ≤ 6.11.15 | To address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Networking ClearPass Policy Manager (CPPM) products to the following software versions (as applicable): - CPPM 6.14.1 and above - CPPM 6.11.16 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com NOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. | Update reference ↗ |
| CVE-2026-73789 | 9 Sep 2026 | 6.12.0 ≤ 6.12.8; 6.11.0 ≤ 6.11.14 | To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking ClearPass Policy Manager to one of the following versions: HPE Networking ClearPass Policy Manager - 6.14.x: ClearPass 6.14.0 and above - 6.12.x: ClearPass 6.12.8-HF and above - 6.11.x: ClearPass 6.11.15 and above NOTE: Customers running HPE Networking ClearPass Policy Manager 6.12.x are encouraged to upgrade to a supported software branch for complete remediation. Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home. | Update reference ↗ |
| CVE-2026-73788 | 9 Sep 2026 | 6.12.0 ≤ 6.12.8; 6.11.0 ≤ 6.11.14 | To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking ClearPass Policy Manager to one of the following versions: HPE Networking ClearPass Policy Manager - 6.14.x: ClearPass 6.14.0 and above - 6.12.x: ClearPass 6.12.8-HF and above - 6.11.x: ClearPass 6.11.15 and above NOTE: Customers running HPE Networking ClearPass Policy Manager 6.12.x are encouraged to upgrade to a supported software branch for complete remediation. Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home. | Update reference ↗ |
| CVE-2026-73787 | 9 Sep 2026 | 6.11.0 ≤ 6.11.14 | To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking ClearPass Policy Manager to one of the following versions: HPE Networking ClearPass Policy Manager - 6.14.x: ClearPass 6.14.0 and above - 6.12.x: ClearPass 6.12.8-HF and above - 6.11.x: ClearPass 6.11.15 and above NOTE: Customers running HPE Networking ClearPass Policy Manager 6.12.x are encouraged to upgrade to a supported software branch for complete remediation. Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home. | Update reference ↗ |
| CVE-2026-73786 | 9 Sep 2026 | 6.11.0 ≤ 6.11.14 | To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking ClearPass Policy Manager to one of the following versions: HPE Networking ClearPass Policy Manager - 6.14.x: ClearPass 6.14.0 and above - 6.12.x: ClearPass 6.12.8-HF and above - 6.11.x: ClearPass 6.11.15 and above NOTE: Customers running HPE Networking ClearPass Policy Manager 6.12.x are encouraged to upgrade to a supported software branch for complete remediation. Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home. | Update reference ↗ |
| CVE-2026-73769 | 9 Sep 2026 | 6.12.0 ≤ 6.12.8; 6.11.0 ≤ 6.11.14 | To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking ClearPass Policy Manager to one of the following versions: HPE Networking ClearPass Policy Manager - 6.14.x: ClearPass 6.14.0 and above - 6.12.x: ClearPass 6.12.8-HF and above - 6.11.x: ClearPass 6.11.15 and above NOTE: Customers running HPE Networking ClearPass Policy Manager 6.12.x are encouraged to upgrade to a supported software branch for complete remediation. Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home. | Update reference ↗ |
| CVE-2024-41916 | 30 Jul 2024 | ClearPass Policy Manager 6.12.1 and below ≤ <=6.12.1; ClearPass Policy Manager 6.11.8 and below ≤ <=6.11.8 | Upgrade ClearPass Policy Manager to one of the following versions with the fixes to resolve all issues noted in the details section. - ClearPass Policy Manager 6.12.x: 6.12.2 and above - ClearPass Policy Manager 6.11.x: 6.11.9 and above - In addition, for CVE-2024-3596 the following steps need to be taken to enable the RADIUS Message-Authenticator on ClearPass Navigate to Administration > Server Manager > Server Configuration screen, select each server individually to enable Message-Authenticator support. On the server screen, navigate to Service Parameters tab, select the Radius server service Under the Security header, modify the parameters Require Message-Authenticator from NAD = yes Require Message-Authenticator from Proxy Server = yes Save the changes. This will then restart the service with the requirement that the Message-Authenticator be transmitted, or the request will not be processed. HPE Aruba Networking does not evaluate or patch ClearPass Policy Manager versions that have reached their End of Support (EoS) milestone. Supported versions as of the publication date of this advisory are: - ClearPass Policy Manager 6.12.x - ClearPass Policy Manager 6.11.x Software versions with resolution/fixes for the vulnerabilities covered above, can be downloaded from the HPE Networking Support Portal. https://networkingsupport.hpe.com/home; For more information about HPE Aruba Networking's End of Support policy visit: https://www.arubanetworks.com/support-services/end-of-life/ | Update reference ↗ |
| CVE-2024-41915 | 30 Jul 2024 | ClearPass Policy Manager 6.12.1 and below ≤ <=6.12.1; ClearPass Policy Manager 6.11.8 and below ≤ <=6.11.8 | Upgrade ClearPass Policy Manager to one of the following versions with the fixes to resolve all issues noted in the details section. - ClearPass Policy Manager 6.12.x: 6.12.2 and above - ClearPass Policy Manager 6.11.x: 6.11.9 and above - In addition, for CVE-2024-3596 the following steps need to be taken to enable the RADIUS Message-Authenticator on ClearPass Navigate to Administration > Server Manager > Server Configuration screen, select each server individually to enable Message-Authenticator support. On the server screen, navigate to Service Parameters tab, select the Radius server service Under the Security header, modify the parameters Require Message-Authenticator from NAD = yes Require Message-Authenticator from Proxy Server = yes Save the changes. This will then restart the service with the requirement that the Message-Authenticator be transmitted, or the request will not be processed. HPE Aruba Networking does not evaluate or patch ClearPass Policy Manager versions that have reached their End of Support (EoS) milestone. Supported versions as of the publication date of this advisory are: - ClearPass Policy Manager 6.12.x - ClearPass Policy Manager 6.11.x Software versions with resolution/fixes for the vulnerabilities covered above, can be downloaded from the HPE Networking Support Portal. https://networkingsupport.hpe.com/home; For more information about HPE Aruba Networking's End of Support policy visit: https://www.arubanetworks.com/support-services/end-of-life/ | Update reference ↗ |
| CVE-2024-5486 | 30 Jul 2024 | ClearPass Policy Manager 6.12.1 and below ≤ <=6.12.1; ClearPass Policy Manager 6.11.8 and below ≤ <=6.11.8 | Upgrade ClearPass Policy Manager to one of the following versions with the fixes to resolve all issues noted in the details section. - ClearPass Policy Manager 6.12.x: 6.12.2 and above - ClearPass Policy Manager 6.11.x: 6.11.9 and above - In addition, for CVE-2024-3596 the following steps need to be taken to enable the RADIUS Message-Authenticator on ClearPass Navigate to Administration > Server Manager > Server Configuration screen, select each server individually to enable Message-Authenticator support. On the server screen, navigate to Service Parameters tab, select the Radius server service Under the Security header, modify the parameters Require Message-Authenticator from NAD = yes Require Message-Authenticator from Proxy Server = yes Save the changes. This will then restart the service with the requirement that the Message-Authenticator be transmitted, or the request will not be processed. HPE Aruba Networking does not evaluate or patch ClearPass Policy Manager versions that have reached their End of Support (EoS) milestone. Supported versions as of the publication date of this advisory are: - ClearPass Policy Manager 6.12.x - ClearPass Policy Manager 6.11.x Software versions with resolution/fixes for the vulnerabilities covered above, can be downloaded from the HPE Networking Support Portal. https://networkingsupport.hpe.com/home; For more information about HPE Aruba Networking's End of Support policy visit: https://www.arubanetworks.com/support-services/end-of-life/ | Update reference ↗ |
How this record is maintained
The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.