CVE-2020-8218

Pulse Connect Secure Code Injection Vulnerability

A code injection vulnerability exists in Pulse Connect Secure that allows an attacker to crafted a URI to perform an arbitrary code execution via the admin web interface. Vendor/Product: Pulse Secure Pulse Connect Secure. Added to CISA KEV 2022-03-07; required action: Apply updates per vendor instructions.

Category: Vulnerability, Known Exploited