{"cvss":8.0,"datePublished":"2021-11-03","dateUpdated":"2021-11-03","description":"Ivanti Pulse Connect Secure and Policy Secure allows an authenticated attacker from the admin web interface to inject and execute commands.","dueDate":"2022-05-03","id":"CVE-2019-11539","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Known","notes":"https://nvd.nist.gov/vuln/detail/CVE-2019-11539","product":"Pulse Connect Secure and Pulse Policy Secure","requiredAction":"Apply updates per vendor instructions.","severity":"HIGH","source":"cisa_known_exploited","title":"Ivanti Pulse Connect Secure and Policy Secure Command Injection Vulnerability","vendor":"Ivanti"}