Remove 03
Remove 2019 Remove Authentication Remove Government Remove IT
article thumbnail

Pulse Secure fixes zero-day in Pulse Connect Secure (PCS) SSL VPN actively exploited

Security Affairs

that allows remote authenticated attackers to execute arbitrary code as the root user via maliciously crafted meeting room. Threat actors leveraged Pulse Secure VPN bugsdisclosed in 2019 and 2020, along with a new zero-day tracked as CVE-2021-22893. reads the report published by FireEye. reads the advisory published by Pulse Secure.

Security 104