CVE-2018-20193: High severity pulse secure secure access series ssl vpn sa-4000 vulnerability
Certain Secure Access SA Series SSL VPN products (originally developed by Juniper Networks but now sold and supported by Pulse Secure, LLC) allow privilege escalation, as demonstrated by Secure Access SSL VPN SA-4000 5.1R5 (build 9627) 4.2 Release (build 7631). This occurs because appropriate controls are not performed. Specifically, it is possible for a readonly user to change the administrator user password by making a local copy of the /dana-admin/user/update.cgi page, changing the "user" value, and saving the changes.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-20193?
CVE-2018-20193 is classified as a privilege escalation vulnerability.
How do I fix CVE-2018-20193?
To mitigate CVE-2018-20193, it is recommended to update to the latest version of the software provided by Pulse Secure.
Which products are affected by CVE-2018-20193?
CVE-2018-20193 affects certain versions of Pulse Secure Secure Access SA Series SSL VPN products.
What versions of software are impacted by CVE-2018-20193?
The specific impacted versions are 4.2 and 5.1R5 of the Secure Access SSL VPN SA-4000.
What kind of attack does CVE-2018-20193 enable?
CVE-2018-20193 enables attackers to escalate privileges on the affected SSL VPN devices.