vendor:
Pulse Connect Secure
by:
Justin Wagner (0xDezzy), Alyssa Herrera (@Alyssa_Herrera_)
7.2
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: Pulse Connect Secure
Affected Version From: 8.1R15.1
Affected Version To: 9.0R3.4
Patch Exists: YES
Related CWE: CVE-2019-11539
CPE: 2.3:a:pulsesecure:pulse_connect_secure:8.1r15.1:*:*:*:*:*:*:*
Other Scripts:
N/A
Platforms Tested: Linux
2019
Pulse Secure Post-Auth Remote Code Execution
Exploits CVE-2019-11539 to run commands on the Pulse Secure Connect VPN. Downloads Modified SSH configuration and authorized_keys file to allow SSH as root.
Mitigation:
Pulse Secure has released patches for the affected versions. Users should upgrade to the latest version of Pulse Secure Connect.