Total vulnerabilities in the database
In Ivanti Pulse Secure Pulse Connect Secure (PCS) before 9.1R12, the administrator password is stored in the HTML source code of the "Maintenance > Push Configuration > Targets > Target Name" targets.cgi screen. A read-only administrative user can escalate to a read-write administrative role.
Software | From | Fixed in |
---|---|---|
pulsesecure / pulse_connect_secure | - | 9.1 |
ivanti / connect_secure | 9.1-r1 | 9.1-r1.x |
ivanti / connect_secure | 9.1-r2 | 9.1-r2.x |
ivanti / connect_secure | 9.1-r3 | 9.1-r3.x |
ivanti / connect_secure | 9.1-r4 | 9.1-r4.x |
ivanti / connect_secure | 9.1-r4.1 | 9.1-r4.1.x |
ivanti / connect_secure | 9.1-r4.2 | 9.1-r4.2.x |
ivanti / connect_secure | 9.1-r4.3 | 9.1-r4.3.x |
ivanti / connect_secure | 9.1-r5 | 9.1-r5.x |
ivanti / connect_secure | 9.1-r6 | 9.1-r6.x |
ivanti / connect_secure | 9.1-r7 | 9.1-r7.x |
ivanti / connect_secure | 9.1-r8 | 9.1-r8.x |
ivanti / connect_secure | 9.1-r8.1 | 9.1-r8.1.x |
ivanti / connect_secure | 9.1-r8.2 | 9.1-r8.2.x |
ivanti / connect_secure | 9.1-r9 | 9.1-r9.x |
ivanti / connect_secure | 9.1-r9.1 | 9.1-r9.1.x |
ivanti / connect_secure | 9.1-r11.3 | 9.1-r11.3.x |
ivanti / connect_secure | 9.1-r11.4 | 9.1-r11.4.x |
ivanti / connect_secure | 9.1 | 9.1.x |
ivanti / connect_secure | 9.1-r10.0 | 9.1-r10.0.x |
ivanti / connect_secure | 9.1-r11.0 | 9.1-r11.0.x |