Source |
The Hacker News |
Identifiant |
2736466 |
Date de publication |
2021-05-04 00:52:50 (vue: 2021-05-04 08:06:20) |
Titre |
Critical Patch Out for Month-Old Pulse Secure VPN 0-Day Under Attack |
Texte |
Ivanti, the company behind Pulse Secure VPN appliances, has released a security patch to remediate a critical security vulnerability that was found being actively exploited in the wild by at least two different threat actors.
Tracked as CVE-2021-22893 (CVSS score 10), the flaw concerns "multiple use after free" issues in Pulse Connect Secure that could allow a remote unauthenticated attacker to |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 22893 actively actors after allow appliances as cve attack attacker behind being company concerns connect could critical cvss day different exploited flaw found free has issues ivanti least month multiple old out patch pulse released remediate remote score secure security threat tracked two unauthenticated under use vpn vulnerability wild |
Tags |
Vulnerability
Threat
|
Stories |
|
Move |
|