PT-2019-10249 · Pulse · Pulse Connect Secure+1
CVE-2018-20810
·
Publicado
2019-03-16
·
Atualizado
2024-02-27
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Pulse Connect Secure (PCS) versions 8.3RX through 8.3R1
Pulse Policy Secure (PPS) versions 5.4RX through 5.4R1
Description:
The issue concerns the lack of proper encryption for session data between cluster nodes during cluster synchronization.
Recommendations:
For Pulse Connect Secure (PCS) versions 8.3RX through 8.3R1, update to version 8.3R2 or later.
For Pulse Policy Secure (PPS) versions 5.4RX through 5.4R1, update to version 5.4R2 or later.
Correção
Inadequate Encryption Strength
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Pulse Connect Secure
Pulse Policy Secure