PT-2020-20068 · Pulse · Pulse Policy Secure+1

Published

2020-10-28

·

Updated

2024-02-27

·

CVE-2020-8261

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Pulse Connect Secure / Pulse Policy Secure versions prior to 9.1R9
Description A vulnerability in the Pulse Connect Secure / Pulse Policy Secure allows for arbitrary cookie injection.
Recommendations For Pulse Connect Secure / Pulse Policy Secure versions prior to 9.1R9, update to version 9.1R9 or later to resolve the issue.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2020-8261

Affected Products

Pulse Connect Secure
Pulse Policy Secure