ZeroHour

CVE-2020-8256

PoC
CVSS 3.1
4.9 medium
EPSS
3%p88
Published
()
Modified
Description

A vulnerability in the Pulse Connect Secure < 9.1R8.2 admin web interface could allow an authenticated attacker to gain arbitrary file reading access through Pulse Collaboration via XML External Entity (XXE) vulnerability.

Vendors
ivantipulsesecure
Products
connect secure, pulse connect secure
Weakness
CWE-611
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.