CVE-2020-8241
HIGH 7.5EPSS 1.7%
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 could allow the attacker to perform a MITM Attack if end users are convinced to connect to a malicious server.
- CVSS v3.1
- 7.5 HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H - CVSS v2.0
- 5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P - EPSS
- 1.74% chance of exploitation in the next 30 days, 76th percentile
- Published
- 2020-10-28
- Updated
- 2024-08-04
Proof-of-concept exploits (1)
- withdk/pulse-secure-vpn-mitm-research24★ · 2020-11-01