---
id: CVE-2026-79815
title: >-
  A command injection vulnerability in the OnGuard agent of ClearPass Policy
  Manager could allow an authenticated remote attacker to inject arbitrary
  commands
summary: >-
  A command injection vulnerability in the OnGuard agent of ClearPass Policy
  Manager could allow an authenticated remote attacker to inject arbitrary
  commands. Successful exploitation could allow an attacker to execute commands
  with elevat…
severity: medium
cvss: 6.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L'
vendor: Hewlett Packard Enterprise (HPE)
product: ClearPass Policy Manager (CPPM)
affected:
  - clearpass_policy_manager_cppm >= 6.14.0 <= 6.14.0
  - clearpass_policy_manager_cppm >= 6.11.0 <= 6.11.15
published: '2026-10-06'
updated: '2026-10-06'
sourceUpdated: '2026-10-06T20:17:33.197'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-79815'
references:
  - url: >-
      https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05158en_us&docLocale=en_US
    label: security-alert@hpe.com
tags:
  - nvd
  - cve.org
ingestedAt: '2026-10-06T20:16:42.501Z'
---

## Overview

A command injection vulnerability in the OnGuard agent of ClearPass Policy Manager could allow an authenticated remote attacker to inject arbitrary commands. Successful exploitation could allow an attacker to execute commands with elevated privileges on the affected Windows endpoint.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
