CVE-2021-22893

NVD Published Date: April 23, 2021 at 05:15 PM
NVD Last Modified: February 27, 2024 at 09:04 PM
Download Patch
Vulnerability ID
CVE-2021-22893
Severity
CRITICAL
Severity Score
10.0
Summary
Pulse Connect Secure 9.0R3/9.1R1 and higher is vulnerable to an authentication bypass vulnerability exposed by the Windows File Share Browser and Pulse Secure Collaboration features of Pulse Connect Secure that can allow an unauthenticated user to perform remote arbitrary code execution on the Pulse Connect Secure gateway. This vulnerability has been exploited in the wild.
Mitigation and Patches
-
Metasploit Payload
-
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CWE ID
CWE-416

Recent Publish

KB5044062

KB5046612

CVE-2021-22205

CVE-2021-35211

KB5046613

KB5046615

See More ...

See SecOps Solution
in action

Schedule Demo