- How many CVEs does Pulse Secure have?
- Pulse Secure has 100 published CVE records since 2016, including 0 in the last two years.
- How many Pulse Secure CVEs are in CISA KEV?
- Yes — 9 of Pulse Secure's CVEs are listed in CISA's Known Exploited Vulnerabilities catalog, confirmed exploited in the wild and carrying a CISA remediation deadline.
- Which Pulse Secure products have the most CVEs?
- The Pulse Secure products with the most published CVEs are Pulse Connect Secure, Pulse Policy Secure, pulse secure desktop client, virtual traffic manager, Client.
- What are the most common weakness types in Pulse Secure CVEs?
- Pulse Secure's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-94 (Improper Control of Generation of Code ('Code Injection')), CWE-120 (Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')).
- Are there public exploits for Pulse Secure vulnerabilities?
- Yes — 15 of Pulse Secure's CVEs have a known public exploit.
- How many critical Pulse Secure vulnerabilities are there?
- Pulse Secure has 10 critical and 51 high-severity CVEs.
- What is the average severity of Pulse Secure CVEs?
- The average CVSS base score across Pulse Secure's scored CVEs is 7.2.