CVE-2018-20307: Infoleak
Pulse Secure Virtual Traffic Manager 9.9 versions prior to 9.9r2 and 10.4r1 allow a remote authenticated user to obtain sensitive historical activity information by leveraging incorrect permission validation.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-20307?
CVE-2018-20307 is a vulnerability that affects Pulse Secure Virtual Traffic Manager versions prior to 9.9r2 and 10.4r1.
How does CVE-2018-20307 impact Pulse Secure Virtual Traffic Manager?
CVE-2018-20307 allows a remote authenticated user to obtain sensitive historical activity information by leveraging incorrect permission validation in Pulse Secure Virtual Traffic Manager.
What is the severity of CVE-2018-20307?
The severity of CVE-2018-20307 is medium with a CVSS score of 4.3.
How can I fix CVE-2018-20307?
To fix CVE-2018-20307, users should update to Pulse Secure Virtual Traffic Manager version 9.9r2 or 10.4r1.
Where can I find more information about CVE-2018-20307?
More information about CVE-2018-20307 can be found at the following link: [Pulse Secure Security Advisories - SA43730](https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA43730)