Show filters
93 Total Results
Displaying 21-30 of 93
Sort by:
Attacker Value
Unknown
CVE-2020-8254
Disclosure Date: October 28, 2020 (last updated February 22, 2025)
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 has Remote Code Execution (RCE) if users can be convinced to connect to a malicious server. This vulnerability only affects Windows PDC.To improve the security of connections between Pulse clients and Pulse Connect Secure, see below recommendation(s):Disable Dynamic certificate trust for PDC.
0
Attacker Value
Unknown
CVE-2020-8248
Disclosure Date: October 28, 2020 (last updated November 28, 2024)
A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to escalate privilege.
0
Attacker Value
Unknown
CVE-2020-8240
Disclosure Date: October 28, 2020 (last updated November 28, 2024)
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 allows a restricted user on an endpoint machine can use system-level privileges if the Embedded Browser is configured with Credential Provider. This vulnerability only affects Windows PDC if the Embedded Browser is configured with the Credential Provider.
0
Attacker Value
Unknown
CVE-2020-8255
Disclosure Date: October 28, 2020 (last updated February 22, 2025)
A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary file reading vulnerability is fixed using encrypted URL blacklisting that prevents these messages.
0
Attacker Value
Unknown
CVE-2020-8263
Disclosure Date: October 28, 2020 (last updated February 22, 2025)
A vulnerability in the authenticated user web interface of Pulse Connect Secure < 9.1R9 could allow attackers to conduct Cross-Site Scripting (XSS) through the CGI file.
0
Attacker Value
Unknown
CVE-2020-8249
Disclosure Date: October 28, 2020 (last updated February 22, 2025)
A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to perform buffer overflow.
0
Attacker Value
Unknown
CVE-2020-8262
Disclosure Date: October 28, 2020 (last updated February 22, 2025)
A vulnerability in the Pulse Connect Secure / Pulse Policy Secure below 9.1R9 could allow attackers to conduct Cross-Site Scripting (XSS) and Open Redirection for authenticated user web interface.
0
Attacker Value
Unknown
CVE-2020-8261
Disclosure Date: October 28, 2020 (last updated February 22, 2025)
A vulnerability in the Pulse Connect Secure / Pulse Policy Secure < 9.1R9 is vulnerable to arbitrary cookie injection.
0
Attacker Value
Unknown
CVE-2020-8241
Disclosure Date: October 28, 2020 (last updated November 28, 2024)
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 could allow the attacker to perform a MITM Attack if end users are convinced to connect to a malicious server.
0
Attacker Value
Unknown
CVE-2020-8956
Disclosure Date: October 27, 2020 (last updated February 22, 2025)
Pulse Secure Desktop Client 9.0Rx before 9.0R5 and 9.1Rx before 9.1R4 on Windows reveals users' passwords if Save Settings is enabled.
0