Desktop
by Pulsesecure
CVEs (7)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-15865 | Hig | 0.51 | 7.8 | 0.00 | Sep 6, 2018 | The Pulse Secure Desktop (macOS) has a Privilege Escalation Vulnerability. | ||
| CVE-2016-2408 | Hig | 0.51 | 7.8 | 0.00 | Aug 2, 2016 | Pulse Secure Desktop before 5.2R2 and Pulse Secure Installer Service before 8.2R2 and below for Windows allow restricted users to gain privileges via unspecified vectors. | ||
| CVE-2018-7572 | Med | 0.44 | 6.8 | 0.00 | Sep 12, 2018 | Pulse Secure Client 9.0R1 and 5.3RX before 5.3R5, when configured to authenticate VPN users during Windows Logon, can allow attackers to bypass Windows authentication and execute commands on the system with the privileges of Pulse Secure Client. The attacker must interrupt the… | ||
| CVE-2018-6374 | Med | 0.42 | 6.5 | 0.01 | Jan 31, 2018 | The GUI component (aka PulseUI) in Pulse Secure Desktop Linux clients before PULSE5.2R9.2 and 5.3.x before PULSE5.3R4.2 does not perform strict SSL Certificate Validation. This can lead to the manipulation of the Pulse Connection set. | ||
| CVE-2018-15749 | Med | 0.36 | 5.5 | 0.00 | Sep 6, 2018 | The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Format String Vulnerability. | ||
| CVE-2018-15726 | Med | 0.34 | 5.3 | 0.00 | Sep 6, 2018 | The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Privilege Escalation Vulnerability. | ||
| CVE-2020-8956 | Low | 0.25 | 3.3 | 0.01 | Oct 27, 2020 | Pulse Secure Desktop Client 9.0Rx before 9.0R5 and 9.1Rx before 9.1R4 on Windows reveals users' passwords if Save Settings is enabled. |
- risk 0.51cvss 7.8epss 0.00
The Pulse Secure Desktop (macOS) has a Privilege Escalation Vulnerability.
- risk 0.51cvss 7.8epss 0.00
Pulse Secure Desktop before 5.2R2 and Pulse Secure Installer Service before 8.2R2 and below for Windows allow restricted users to gain privileges via unspecified vectors.
- risk 0.44cvss 6.8epss 0.00
Pulse Secure Client 9.0R1 and 5.3RX before 5.3R5, when configured to authenticate VPN users during Windows Logon, can allow attackers to bypass Windows authentication and execute commands on the system with the privileges of Pulse Secure Client. The attacker must interrupt the…
- risk 0.42cvss 6.5epss 0.01
The GUI component (aka PulseUI) in Pulse Secure Desktop Linux clients before PULSE5.2R9.2 and 5.3.x before PULSE5.3R4.2 does not perform strict SSL Certificate Validation. This can lead to the manipulation of the Pulse Connection set.
- risk 0.36cvss 5.5epss 0.00
The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Format String Vulnerability.
- risk 0.34cvss 5.3epss 0.00
The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Privilege Escalation Vulnerability.
- risk 0.25cvss 3.3epss 0.01
Pulse Secure Desktop Client 9.0Rx before 9.0R5 and 9.1Rx before 9.1R4 on Windows reveals users' passwords if Save Settings is enabled.