|
198421
|
7.2 |
HIGH
Network
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary code execution using uncontrolled gzip extraction.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-8260
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198422
|
4.9 |
MEDIUM
Network
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary file reading vulnerability is fixed using encrypted URL blacklist…
|
NVD-CWE-noinfo
|
CVE-2020-8255
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198423
|
8.8 |
HIGH
Network
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 has Remote Code Execution (RCE) if users can be convinced to connect to a malicious server. This vulnerability only affects Windows PDC.To i…
|
CWE-22
Path Traversal
|
CVE-2020-8254
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198424
|
7.8 |
HIGH
Local
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to escalate privilege.
|
NVD-CWE-noinfo
|
CVE-2020-8250
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198425
|
7.8 |
HIGH
Local
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to perform buffer overflow.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-8249
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198426
|
7.8 |
HIGH
Local
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to escalate privilege.
|
NVD-CWE-noinfo
|
CVE-2020-8248
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198427
|
7.5 |
HIGH
Network
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 could allow the attacker to perform a MITM Attack if end users are convinced to connect to a malicious server.
|
NVD-CWE-noinfo
|
CVE-2020-8241
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198428
|
7.8 |
HIGH
Local
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 allows a restricted user on an endpoint machine can use system-level privileges if the Embedded Browser is configured with Credential Provid…
|
NVD-CWE-noinfo
|
CVE-2020-8240
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198429
|
9.8 |
CRITICAL
Network
|
pulsesecure
|
pulse_secure_desktop_client
|
A vulnerability in the Pulse Secure Desktop Client < 9.1R9 is vulnerable to the client registry privilege escalation attack. This fix also requires Server Side Upgrade due to Standalone Host Checker …
|
NVD-CWE-noinfo
|
CVE-2020-8239
|
2024-11-21 14:38 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198430
|
8.8 |
HIGH
Adjacent
|
lenovo
|
thinkpad_stack_wireless_router_firmware
|
An authentication bypass vulnerability was reported in Lenovo ThinkPad Stack Wireless Router firmware version 1.1.3.4 that could allow escalation of privilege.
|
CWE-287
Improper Authentication
|
CVE-2020-8350
|
2024-11-21 14:38 |
2020-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|