CVE detail
CVE-2018-20809 — CVE-2018-20809
Published 2019-06-28 · Modified 2026-06-17 · Vendor ivanti · Product connect_secure · Source nvd
HIGH
severity
CVSS-derived band
0.0272
EPSS probability
exploitation probability, 30d
85.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
A crafted message can cause the web server to crash with Pulse Secure Pulse Connect Secure (PCS) 8.3RX before 8.3R5 and Pulse Policy Secure 5.4RX before 5.4R5. This is not applicable to PCS 8.1RX.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References