Total vulnerabilities in the database
Pulse Secure Pulse Connect Secure 8.1.x before 8.1R14, 8.2.x before 8.2R11, and 8.3.x before 8.3R5 do not properly process nested XML entities, which allows remote attackers to cause a denial of service (memory consumption and memory errors) via a crafted XML document.
Software | From | Fixed in |
---|---|---|
pulsesecure / pulse_connect_secure | 8.1 | 8.1r14 |
pulsesecure / pulse_connect_secure | 8.2 | 8.2r11 |
pulsesecure / pulse_connect_secure | 8.3 | 8.3r5 |