{"id":"CVE-2026-73787","title":"Authenticated Arbitrary File Write allows Remote Code Execution via CPPM Web Interface","summary":"A vulnerability in the CPPM web interface could allow an authenticated remote attacker to access directory information on a vulnerable system. Successful exploitation could allow an attacker to execute arbitrary commands on the underlyin…","severity":"high","cvss":7.2,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H","cvssSource":"cna","vendor":"Hewlett Packard Enterprise (HPE)","product":"ClearPass Policy Manager (CPPM)","affected":["clearpass_policy_manager_cppm >= 6.11.0 <= 6.11.14"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-10T00:00:00+00:00"},"published":"2026-09-09","updated":"2026-09-11","sourceUpdated":"2026-09-11T03:56:31.790Z","source":"CVEORG","sourceUrl":"https://www.cve.org/CVERecord?id=CVE-2026-73787","references":[{"url":"https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05130en_us&docLocale=en_US"}],"tags":["cve.org"],"epss":0.00814,"epssPercentile":0.55568,"ingestedAt":"2026-09-11T16:45:47.926Z","slug":"CVE-2026-73787","body":"## Overview\n\nA vulnerability in the CPPM web interface could allow an authenticated remote attacker to access directory information on a vulnerable system. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.\n\n## Affected\n\n- `clearpass_policy_manager_cppm >= 6.11.0 <= 6.11.14`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":40,"depthScoreParts":{"impact":39.6,"likelihood":0.2,"exploitation":0,"ransomware":0},"changes":[]}