In Pulse Secure Pulse Connect Secure (PCS) before 8.1R15.1, 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R3.4 and Pulse Policy Secure (PPS) before 5.1R15.1, 5.2 before 5.2R12.1, 5.3 before 5.3R15.1, 5.4 before 5.4R7.1, and 9.0 before 9.0R3.2, an authenticated attacker (via the admin web interface) can exploit Incorrect Access Control to execute arbitrary code on the appliance.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-06-03T19:34:46

Updated: 2019-10-16T17:06:17

Reserved: 2019-04-24T00:00:00


Link: CVE-2019-11509

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-06-03T20:29:00.517

Modified: 2024-02-27T21:04:17.560


Link: CVE-2019-11509

JSON object: View

cve-icon Redhat Information

No data.