Rapid7

vulnerability

Pulse Secure Pulse Connect Secure: CVE-2016-4787: [Pulse Secure] File content disclosure issue (SA40207)

Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:P)
Published
May 26, 2016
Added
Oct 28, 2020
Modified
Feb 15, 2024

Description

Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r10, and 7.4 before 7.4r13.4 allow remote attackers to read sensitive system authentication files in an unspecified directory via unknown vectors.

Solutions

pulse-secure-pulse-connect-secure-upgrade-7_4r13_4pulse-secure-pulse-connect-secure-upgrade-8_0r10pulse-secure-pulse-connect-secure-upgrade-8_1r2pulse-secure-pulse-connect-secure-upgrade-8_2r1
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.