CVE-2018-6374

The GUI component (aka PulseUI) in Pulse Secure Desktop Linux clients before PULSE5.2R9.2 and 5.3.x before PULSE5.3R4.2 does not perform strict SSL Certificate Validation. This can lead to the manipulation of the Pulse Connection set.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:pulsesecure:desktop_linux_client:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:pulsesecure:desktop_linux_client:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-01-31 21:29

Updated : 2024-02-04 19:46


NVD link : CVE-2018-6374

Mitre link : CVE-2018-6374

CVE.ORG link : CVE-2018-6374


JSON object : View

Products Affected

pulsesecure

  • desktop_linux_client
CWE
CWE-295

Improper Certificate Validation