Skip to main content

Vendor archive

pulsesecure CVEs

Beta · best-effort

93 CVEs tagged to vendor pulsesecure8 Critical, 45 High, 37 Medium, 3 Low, 0 Unrated.

CVE-2021-31922

Published May 14, 2021

An HTTP Request Smuggling vulnerability in Pulse Secure Virtual Traffic Manager before 21.1 could allow an attacker to smuggle an HTTP request through an HTTP/2 Header. This vulne…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-8263

Published Oct 28, 2020

A vulnerability in the authenticated user web interface of Pulse Connect Secure < 9.1R9 could allow attackers to conduct Cross-Site Scripting (XSS) through the CGI file.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-8255

Published Oct 28, 2020

A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary file reading vulnerability is fixed using enc…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-8241

Published Oct 28, 2020

A vulnerability in the Pulse Secure Desktop Client < 9.1R9 could allow the attacker to perform a MITM Attack if end users are convinced to connect to a malicious server.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-8240

Published Oct 28, 2020

A vulnerability in the Pulse Secure Desktop Client < 9.1R9 allows a restricted user on an endpoint machine can use system-level privileges if the Embedded Browser is configured wi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-8239

Published Oct 28, 2020

A vulnerability in the Pulse Secure Desktop Client < 9.1R9 is vulnerable to the client registry privilege escalation attack. This fix also requires Server Side Upgrade due to Stan…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 93 CVEsPage 1 of 4