A vulnerability in the Pulse Secure Desktop Client < 9.1R9 is vulnerable to the client registry privilege escalation attack. This fix also requires Server Side Upgrade due to Standalone Host Checker Client (Windows) and Windows PDC.
- https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44601
- https://github.com/withdk/pulse-secure-vpn-mitm-research