CVE-2021-22899
Ivanti Pulse Connect Secure
A command injection vulnerability exists in Pulse Connect Secure before 9.1R11.4 allows a remote authenticated attacker to perform remote code execution via Windows Resource Profiles Feature
- CVSS
- 8.8
- EPSS
- 22.3% 97.5% percentile
- CISA KEV
- Listed
- Published
- 2021.05.27