3.5
CVE-2015-7323
- EPSS 1.66%
- Veröffentlicht 05.10.2015 15:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
The Secure Meeting (Pulse Collaboration) in Pulse Connect Secure (formerly Juniper Junos Pulse) before 7.1R22.1, 7.4, 8.0 before 8.0R11, and 8.1 before 8.1R3 allows remote authenticated users to bypass intended access restrictions and log into arbitrary meetings by leveraging a meeting id and meetingAppSun.jar.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Juniper ≫ Pulse Connect Secure Version 7.1
Juniper ≫ Pulse Connect Secure Version 7.4
Juniper ≫ Pulse Connect Secure Version 8.0
Juniper ≫ Pulse Connect Secure Version 8.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.66% | 0.735 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 3.5 | 6.8 | 2.9 |
AV:N/AC:M/Au:S/C:P/I:N/A:N
|
http://seclists.org/fulldisclosure/2015/Sep/98
http://www.securitytracker.com/id/1033684
https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA40054
https://packetstormsecurity.com/files/133711/Junos-Pulse-Secure-Meeting-8.0.5-Access-Bypass.html
https://profundis-labs.com/advisories/CVE-2015-7323.txt