First published: Thu May 26 2016(Updated: )
Pulse Connect Secure (PCS) 8.2 before 8.2r1 allows remote attackers to disclose sign in pages via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ivanti Connect Secure (ICS) VPN | =8.2 | |
Pulse Secure Pulse Connect Secure | =8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4792 has been assigned a severity score of 6.5, indicating it is of medium severity.
To mitigate CVE-2016-4792, upgrade Pulse Connect Secure to version 8.2r1 or later.
CVE-2016-4792 allows remote attackers to disclose sign-in pages, potentially exposing sensitive login information.
CVE-2016-4792 affects Pulse Connect Secure version 8.2 prior to 8.2r1.
There are no known effective workarounds for CVE-2016-4792, so upgrading is the recommended action.