EUVD Vulnerability Catalog
EUVD-2026-93880
Severity: CRITICAL
Base Score: 9.8
CVSS Version: 3.1
Vulnerability Description
A format string vulnerability in an affected service interface of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to corrupt process memory. Successful exploitation could allow an attacker to execute arbitrary code.
CVSS Vector Analysis
Below is the complete, human-readable breakdown of the CVSS metric string: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
▪
Attack Vector (AV): Network
▪
Attack Complexity (AC): Low
▪
Privileges Required (PR): None
▪
User Interaction (UI): None
▪
Scope (S): Unchanged
▪
Confidentiality Impact (C): High
▪
Integrity Impact (I): High
▪
Availability Impact (A): High
Affected Vendors & Systems
Vendor
Hewlett Packard Enterprise (HPE)
References & Advisory Links
Metadata Profile
Database Authority
European Union Agency for Cybersecurity (ENISA) EUVD
Assigner
hpe
EPSS Probability
0
Known Aliases
CVE-2026-76753
GHSA-62qp-w4gp-5m8w
Published On
2026-10-06
Last Updated
2026-10-07