Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Pulse Secure Desktop Client HIGH 7.0
CVE-2020-13162

A time-of-check time-of-use vulnerability in PulseSecureService.exe in Pulse Secure Client versions prior to 9.1.6 down to 5.3 R70 for Windows (which…

No fix yet
Fix from $1,950 2020-06-16
Pulse Secure Desktop Client HIGH 7.5
CVE-2018-20812

An information exposure issue where IPv6 DNS traffic would be sent outside of the VPN tunnel (when Traffic Enforcement was enabled) exists in Pulse S…

Mitigation only
Fix from $1,950 2019-06-28
Secure Access Series Ssl Vpn Sa 4000 HIGH 8.8
CVE-2018-20193

Certain Secure Access SA Series SSL VPN products (originally developed by Juniper Networks but now sold and supported by Pulse Secure, LLC) allow pri…

No fix yet
Fix from $1,950 2018-12-21
Pulse Secure Desktop Client MEDIUM 5.5
CVE-2018-11002

Pulse Secure Desktop Client 5.3 up to and including R6.0 build 1769 on Windows has Insecure Permissions.

No fix yet
Fix from $1,600 2018-11-29
Pulse Secure Desktop MEDIUM 6.8
CVE-2018-7572

Pulse Secure Client 9.0R1 and 5.3RX before 5.3R5, when configured to authenticate VPN users during Windows Logon, can allow attackers to bypass Windo…

Mitigation only
Fix from $1,600 2018-09-12
Pulse Secure Desktop Client MEDIUM 6.8
CVE-2018-16261

In Pulse Secure Pulse Desktop Client 5.3RX before 5.3R5 and 9.0R1, there is a Privilege Escalation Vulnerability with Dynamic Certificate Trust.

Mitigation only
Fix from $1,600 2018-09-06
Pulse Secure Desktop Client HIGH 7.8
CVE-2018-15865

The Pulse Secure Desktop (macOS) has a Privilege Escalation Vulnerability.

No fix yet
Fix from $1,950 2018-09-06
Pulse Secure Desktop Client MEDIUM 5.5
CVE-2018-15749

The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Format String Vulnerability.

Mitigation only
Fix from $1,600 2018-09-06
Pulse Secure Desktop Client MEDIUM 5.3
CVE-2018-15726

The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Privilege Escalation Vulnerability.

No fix yet
Fix from $1,600 2018-09-06
Pulse Connect Secure HIGH 8.8
CVE-2017-11193

Pulse Connect Secure 8.3R1 has CSRF in diag.cgi. In the panel, the diag.cgi file is responsible for running commands such as ping, ping6, traceroute,…

Mitigation only
Fix from $1,950 2017-07-12
Pulse Connect Secure HIGH 8.8
CVE-2017-11196

Pulse Connect Secure 8.3R1 has CSRF in logout.cgi. The logout function of the admin panel is not protected by any CSRF tokens, thus allowing an attac…

Mitigation only
Fix from $1,950 2017-07-12
Pulse Connect Secure MEDIUM 6.1
CVE-2017-11194

Pulse Connect Secure 8.3R1 has Reflected XSS in adminservercacertdetails.cgi. In the admin panel, the certid parameter of adminservercacertdetails.cg…

Mitigation only
Fix from $1,600 2017-07-12
Pulse Connect Secure MEDIUM 6.1
CVE-2017-11195

Pulse Connect Secure 8.3R1 has Reflected XSS in launchHelp.cgi. The helpLaunchPage parameter is reflected in an IFRAME element, if the value contains…

Mitigation only
Fix from $1,600 2017-07-12
Pulse Connect Secure MEDIUM 6.5
CVE-2016-3985

The Terminal Services Remote Desktop Protocol (RDP) client session restrictions feature in Pulse Connect Secure (aka PCS) 8.1R7 and 8.2R1 allow remot…

Mitigation only
Fix from $1,600 2016-04-12