
Cloud Vulnerability DB
A community-led vulnerabilities database
A vulnerability identified as CVE-2020-8254 was discovered in the Pulse Secure Desktop Client versions prior to 9.1R9. The vulnerability was disclosed on October 27, 2020, and affects Pulse Connect Secure (PCS), Pulse Policy Secure (PPS), and Pulse Secure Desktop Client (PDC) products (CERT-FR, NVD).
The vulnerability allows for Remote Code Execution (RCE) if users can be convinced to connect to a malicious server. This security flaw is tracked under CWE-23 classification (NVD).
The vulnerability could potentially lead to remote code execution, data integrity compromise, and confidentiality breaches if successfully exploited (CERT-FR).
The vulnerability has been addressed in version 9.1R9 of the Pulse Secure Desktop Client. Users are advised to upgrade to this version or later to mitigate the risk (CERT-FR).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."