cve entity

CVE-2021-22900

1 source-linked records in the current knowledge graph.

high

CVE-2021-22900: Ivanti Pulse Connect Secure Unrestricted File Upload Vulnerability

Ivanti Pulse Connect Secure contains an unrestricted file upload vulnerability that allows an authenticated administrator to perform a file write via a maliciously crafted archive upload in the administrator web interface. Required action: Apply updates per vendor instructions.

CVE-2021-22900EPSS 14.1%IvantiPulse Connect Secure
CISA KEV ↗ · unattributed attribution