Vulnerability Description
Pulse Secure Pulse One On-Premise 2.0.1649 and below does not properly validate requests, which allows remote users to query and obtain sensitive information.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pulsesecure | Pulse One On-Premise | 2.0.1649 |
Related Weaknesses (CWE)
References
- http://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA40971MitigationPatchVendor Advisory
- http://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA40971MitigationPatchVendor Advisory
FAQ
What is CVE-2017-14935?
CVE-2017-14935 is a vulnerability with a CVSS score of 7.5 (HIGH). Pulse Secure Pulse One On-Premise 2.0.1649 and below does not properly validate requests, which allows remote users to query and obtain sensitive information.
How severe is CVE-2017-14935?
CVE-2017-14935 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-14935?
Check the references section above for vendor advisories and patch information. Affected products include: Pulsesecure Pulse One On-Premise.