Ivanti Pulse Connect Secure Command Injection Vulnerability
Vendor: Ivanti
Product: Pulse Connect Secure
Added: 2021-11-03
Due Date: 2021-04-23
Description:
Ivanti Pulse Connect Secure contains a command injection vulnerability that allows remote authenticated users to perform remote code execution via Windows File Resource Profiles.
Required Action:
Apply updates per vendor instructions.
CWEs: