ZDI-23-858: (0Day) Pulse Secure Client SetupService Directory Traversal Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Pulse Secure Client. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-858?
The severity of ZDI-23-858 is high due to its potential to allow local privilege escalation on affected installations.
How do I fix ZDI-23-858?
To fix ZDI-23-858, users should apply the latest security patches provided by Pulse Secure for the Desktop Client.
Who is affected by ZDI-23-858?
ZDI-23-858 affects installations of Pulse Secure Desktop Client for Linux.
What type of vulnerability is ZDI-23-858?
ZDI-23-858 is a local privilege escalation vulnerability which requires low-privileged code execution to exploit.
Can ZDI-23-858 be exploited remotely?
No, ZDI-23-858 cannot be exploited remotely as an attacker must have local access to the system.