CVE-2020-8218 - Pulse Connect Secure Code Injection Vulnerability
Project:Pulse Secure
Product:Pulse Connect Secure
Date Added:2022-03-07Due Date:2022-09-07
Vulnerability Name
Pulse Connect Secure Code Injection Vulnerability
Description
A code injection vulnerability exists in Pulse Connect Secure that allows an attacker to crafted a URI to perform an arbitrary code execution via the admin web interface.
Known To Be Used in Ransomware Campaigns?
Unknown
Action
Apply updates per vendor instructions.
Additional Notes
https://nvd.nist.gov/vuln/detail/CVE-2020-8218