Rapid7 Vulnerability & Exploit Database

Pulse Secure Pulse Connect Secure: Pulse Connect Secure (PCS) and Pulse Policy Secure (PPS) Specifically crafted https packet may cause denial of service (JSA10536)

Back to Search

Pulse Secure Pulse Connect Secure: Pulse Connect Secure (PCS) and Pulse Policy Secure (PPS) Specifically crafted https packet may cause denial of service (JSA10536)

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
07/31/2015
Created
10/28/2020
Added
10/28/2020
Modified
10/28/2020

Description

A denial of service issue was found in the Pulse Connect Secure (PCS) and Pulse Policy Secure (PPS) system software. A specific malformed https packet can potentially cause a system service to crash. After the crash takes place. the system will restart the affected service and return to an operational state. If the issue was ongoing however, there could be an extended loss of service.

Solution(s)

  • pulse-secure-pulse-connect-secure-upgrade-7_1r8
  • pulse-secure-pulse-connect-secure-upgrade-7_2r1

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;