A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary file reading vulnerability is fixed using encrypted URL blacklisting that prevents these messages.
References
Link | Resource |
---|---|
https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44601 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-10-28 06:15
Updated : 2021-08-17 09:35
NVD link : CVE-2020-8255
Mitre link : CVE-2020-8255
JSON object : View
CWE
Products Affected
pulsesecure
- pulse_secure_desktop_client