Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.0 CVE-2020-13162 A time-of-check time-of-use vulnerability in PulseSecureService.exe in Pulse Secure Client versions prior to 9.1.6 down to 5.3 R70 for Windows (which… Pulse Secure Desktop Client No fix yet Fix from $1,9502020-06-16 HIGH 7.5 CVE-2018-20812 An information exposure issue where IPv6 DNS traffic would be sent outside of the VPN tunnel (when Traffic Enforcement was enabled) exists in Pulse S… Pulse Secure Desktop Client Mitigation only Fix from $1,9502019-06-28 HIGH 8.8 CVE-2018-20193 Certain Secure Access SA Series SSL VPN products (originally developed by Juniper Networks but now sold and supported by Pulse Secure, LLC) allow pri… Secure Access Series Ssl Vpn Sa 4000 No fix yet Fix from $1,9502018-12-21 MEDIUM 5.5 CVE-2018-11002 Pulse Secure Desktop Client 5.3 up to and including R6.0 build 1769 on Windows has Insecure Permissions. Pulse Secure Desktop Client No fix yet Fix from $1,6002018-11-29 MEDIUM 6.8 CVE-2018-7572 Pulse Secure Client 9.0R1 and 5.3RX before 5.3R5, when configured to authenticate VPN users during Windows Logon, can allow attackers to bypass Windo… Pulse Secure Desktop Mitigation only Fix from $1,6002018-09-12 MEDIUM 6.8 CVE-2018-16261 In Pulse Secure Pulse Desktop Client 5.3RX before 5.3R5 and 9.0R1, there is a Privilege Escalation Vulnerability with Dynamic Certificate Trust. Pulse Secure Desktop Client Mitigation only Fix from $1,6002018-09-06 HIGH 7.8 CVE-2018-15865 The Pulse Secure Desktop (macOS) has a Privilege Escalation Vulnerability. Pulse Secure Desktop Client No fix yet Fix from $1,9502018-09-06 MEDIUM 5.5 CVE-2018-15749 The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Format String Vulnerability. Pulse Secure Desktop Client Mitigation only Fix from $1,6002018-09-06 MEDIUM 5.3 CVE-2018-15726 The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Privilege Escalation Vulnerability. Pulse Secure Desktop Client No fix yet Fix from $1,6002018-09-06 HIGH 8.8 CVE-2017-11193 Pulse Connect Secure 8.3R1 has CSRF in diag.cgi. In the panel, the diag.cgi file is responsible for running commands such as ping, ping6, traceroute,… Pulse Connect Secure Mitigation only Fix from $1,9502017-07-12 HIGH 8.8 CVE-2017-11196 Pulse Connect Secure 8.3R1 has CSRF in logout.cgi. The logout function of the admin panel is not protected by any CSRF tokens, thus allowing an attac… Pulse Connect Secure Mitigation only Fix from $1,9502017-07-12 MEDIUM 6.1 CVE-2017-11194 Pulse Connect Secure 8.3R1 has Reflected XSS in adminservercacertdetails.cgi. In the admin panel, the certid parameter of adminservercacertdetails.cg… Pulse Connect Secure Mitigation only Fix from $1,6002017-07-12 MEDIUM 6.1 CVE-2017-11195 Pulse Connect Secure 8.3R1 has Reflected XSS in launchHelp.cgi. The helpLaunchPage parameter is reflected in an IFRAME element, if the value contains… Pulse Connect Secure Mitigation only Fix from $1,6002017-07-12 MEDIUM 6.5 CVE-2016-3985 The Terminal Services Remote Desktop Protocol (RDP) client session restrictions feature in Pulse Connect Secure (aka PCS) 8.1R7 and 8.2R1 allow remot… Pulse Connect Secure Mitigation only Fix from $1,6002016-04-12