CVE-2020-13162

A time-of-check time-of-use vulnerability in PulseSecureService.exe in Pulse Secure Client versions prior to 9.1.6 down to 5.3 R70 for Windows (which runs as NT AUTHORITY/SYSTEM) allows unprivileged users to run a Microsoft Installer executable with elevated privileges.
TOCTOU
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7 HIGH
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
CISA-ADPADP
7 HIGH
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 56%
VendorProductVersion
pulsesecurepulse_secure_desktop_client
5.3:r1.0
pulsesecurepulse_secure_desktop_client
5.3:r1.1
pulsesecurepulse_secure_desktop_client
5.3:r2.0
pulsesecurepulse_secure_desktop_client
5.3:r3.0
pulsesecurepulse_secure_desktop_client
5.3:r4.1
pulsesecurepulse_secure_desktop_client
5.3:r4.2
pulsesecurepulse_secure_desktop_client
5.3:r5.0
pulsesecurepulse_secure_desktop_client
5.3:r5.2
pulsesecurepulse_secure_desktop_client
5.3:r6.0
pulsesecurepulse_secure_desktop_client
5.3:r7.0
pulsesecurepulse_secure_desktop_client
9.0:r1.0
pulsesecurepulse_secure_desktop_client
9.0:r2
pulsesecurepulse_secure_desktop_client
9.0:r2.1
pulsesecurepulse_secure_desktop_client
9.0:r3
pulsesecurepulse_secure_desktop_client
9.0:r3.2
pulsesecurepulse_secure_desktop_client
9.0:r4
pulsesecurepulse_secure_desktop_client
9.0:r4.0
pulsesecurepulse_secure_desktop_client
9.0:r5.0
pulsesecurepulse_secure_desktop_client
9.0:r6.0
pulsesecurepulse_secure_desktop_client
9.1:r1.0
pulsesecurepulse_secure_desktop_client
9.1:r2.0
pulsesecurepulse_secure_desktop_client
9.1:r3.0
pulsesecurepulse_secure_desktop_client
9.1:r3.1
pulsesecurepulse_secure_desktop_client
9.1:r4.0
pulsesecurepulse_secure_desktop_client
9.1:r4.1
pulsesecurepulse_secure_desktop_client
9.1:r4.2
pulsesecurepulse_secure_desktop_client
9.1:r5.0
pulsesecurepulse_secure_desktop_client
9.1:r6.0
pulsesecurepulse_secure_desktop_client
9.1:r7.0
pulsesecurepulse_secure_installer_service
8.3
pulsesecurepulse_secure_installer_service
9.1
pulsesecurepulse_secure_installer_service
9.1:r5.0
𝑥
= Vulnerable software versions