Unrated severityNVD Advisory· Published Jan 31, 2018· Updated Aug 5, 2024
CVE-2018-6374
CVE-2018-6374
Description
The GUI component (aka PulseUI) in Pulse Secure Desktop Linux clients before PULSE5.2R9.2 and 5.3.x before PULSE5.3R4.2 does not perform strict SSL Certificate Validation. This can lead to the manipulation of the Pulse Connection set.
Affected products
1- Range: <5.2R9.2, >=5.3.0 <5.3R4.2
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA43620mitrex_refsource_CONFIRM
- www.securityfocus.com/bid/102908mitrevdb-entryx_refsource_BID
News mentions
0No linked articles in our index yet.