CVE-2019-11538

EUVD-2019-3209
In Pulse Secure Pulse Connect Secure version 9.0RX before 9.0R3.4, 8.3RX before 8.3R7.1, 8.2RX before 8.2R12.1, and 8.1RX before 8.1R15.1, an NFS problem could allow an authenticated attacker to access the contents of arbitrary files on the affected device.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.7 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
mitreCNA
7.7 HIGH
NETWORK
LOW
LOW
CVSS:3.0/AC:L/AV:N/A:N/C:H/I:N/PR:L/S:C/UI:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 88%
Affected Products (NVD)
VendorProductVersion
ivanticonnect_secure
8.1:r1.0
ivanticonnect_secure
8.1:r1.1
ivanticonnect_secure
8.1:r10.0
ivanticonnect_secure
8.1:r11.0
ivanticonnect_secure
8.1:r11.1
ivanticonnect_secure
8.1:r12.0
ivanticonnect_secure
8.1:r12.1
ivanticonnect_secure
8.1:r13.0
ivanticonnect_secure
8.1:r14.0
ivanticonnect_secure
8.1:r2.0
ivanticonnect_secure
8.1:r2.1
ivanticonnect_secure
8.1:r3.0
ivanticonnect_secure
8.1:r3.1
ivanticonnect_secure
8.1:r3.2
ivanticonnect_secure
8.1:r4.0
ivanticonnect_secure
8.1:r4.1
ivanticonnect_secure
8.1:r5.0
ivanticonnect_secure
8.1:r6.0
ivanticonnect_secure
8.1:r7.0
ivanticonnect_secure
8.1:r8.0
ivanticonnect_secure
8.1:r9.0
ivanticonnect_secure
8.1:r9.1
ivanticonnect_secure
8.1:r9.2
ivanticonnect_secure
8.2:r1.0
ivanticonnect_secure
8.2:r1.1
ivanticonnect_secure
8.2:r10.0
ivanticonnect_secure
8.2:r11.0
ivanticonnect_secure
8.2:r12.0
ivanticonnect_secure
8.2:r2.0
ivanticonnect_secure
8.2:r3.0
ivanticonnect_secure
8.2:r3.1
ivanticonnect_secure
8.2:r4.0
ivanticonnect_secure
8.2:r4.1
ivanticonnect_secure
8.2:r5.0
ivanticonnect_secure
8.2:r5.1
ivanticonnect_secure
8.2:r6.0
ivanticonnect_secure
8.2:r7.0
ivanticonnect_secure
8.2:r7.1
ivanticonnect_secure
8.2:r7.2
ivanticonnect_secure
8.2:r8.0
ivanticonnect_secure
8.2:r8.1
ivanticonnect_secure
8.2:r8.2
ivanticonnect_secure
8.2:r9.0
ivanticonnect_secure
8.3:r1
ivanticonnect_secure
8.3:r2
ivanticonnect_secure
8.3:r2.1
ivanticonnect_secure
8.3:r3
ivanticonnect_secure
8.3:r4
ivanticonnect_secure
8.3:r5
ivanticonnect_secure
8.3:r5.1
ivanticonnect_secure
8.3:r5.2
ivanticonnect_secure
8.3:r6
ivanticonnect_secure
8.3:r6.1
ivanticonnect_secure
9.0:r1
ivanticonnect_secure
9.0:r2
ivanticonnect_secure
9.0:r2.1
ivanticonnect_secure
9.0:r3
ivanticonnect_secure
9.0:r3.1
ivanticonnect_secure
9.0:r3.2
𝑥
= Vulnerable software versions