A vulnerability in the Pulse Secure Desktop Client < 9.1R9 could allow the attacker to perform a MITM Attack if end users are convinced to connect to a malicious server.
- https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44601
- https://github.com/ARPSyndicate/cvemon
- https://github.com/AmberWolfCyber/NachoVPN
- https://github.com/developer3000S/PoC-in-GitHub
- https://github.com/hectorgie/PoC-in-GitHub
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/soosmile/POC
- https://github.com/withdk/pulse-secure-vpn-mitm-research