CVE-2020-8256

Publication date

2020-09-29 13:41:32

Family

hackerone

State

PUBLISHED

Description

A vulnerability in the Pulse Connect Secure < 9.1R8.2 admin web interface could allow an authenticated attacker to gain arbitrary file reading access through Pulse Collaboration via XML External Entity (XXE) vulnerability.