Ivanti Pulse Connect Secure Arbitrary File Read Vulnerability
Overdue
Ivanti / Pulse Connect Secure
Known Ransomware Use
CWE-22
Description
Ivanti Pulse Connect Secure contains an arbitrary file read vulnerability that allows an unauthenticated remote attacker with network access via HTTPS to send a specially crafted URI.
Required Action
Apply updates per vendor instructions.
Additional Information
- Catalog Version
- 2025.01.24
- Catalog Released
- Jan. 24, 2025
- Days Until Due
- 0 days
- Last Updated
- 6 months ago