Ivanti Pulse Connect Secure and Policy Secure Command Injection Vulnerability
Overdue
Ivanti / Pulse Connect Secure and Pulse Policy Secure
Known Ransomware Use
CWE-78
Description
Ivanti Pulse Connect Secure and Policy Secure allows an authenticated attacker from the admin web interface to inject and execute commands.
Required Action
Apply updates per vendor instructions.
Additional Information
- Catalog Version
- 2025.01.24
- Catalog Released
- Jan. 24, 2025
- Days Until Due
- 0 days
- Last Updated
- 8 months ago