QID 38864

Date Published: 2022-04-20

QID 38864: Pulse Connect Secure Denial of Service (DoS) Vulnerability (SA45100)

Pulse Connect Secure provides secure, authenticated access for remote and mobile users from any web-enabled device to corporate resources anytime, anywhere. Pulse Connect Secure is the most widely deployed SSL VPN for organizations of any size, across every major industry.

Affected Versions:
Pulse Connect Secure (PCS) 9.1R14 and below.

QID Detection Logic:(Authenticated)
This QID checks for vulnerable version of Pulse Connect Secure.

Successful exploitation of this vulnerability may allow an attacker to perform Denial of Service attacks on the vulnerable targets.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    The vendor has released fixes. Please visit SA45100 please check here for more information.

    CVEs related to QID 38864

    Software Advisories
    Advisory ID Software Component Link
    SA45100 URL Logo kb.pulsesecure.net/articles/Pulse_Security_Advisories/CVE-2022-0778-OpenSSL-Vulnerability-may-lead-to-DoS-attack/?kA23Z000000L6pD