Vulnerability Details CVE-2018-20307
Pulse Secure Virtual Traffic Manager 9.9 versions prior to 9.9r2 and 10.4r1 allow a remote authenticated user to obtain sensitive historical activity information by leveraging incorrect permission validation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.2%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 4.0
Products affected by CVE-2018-20307
-
cpe:2.3:a:pulsesecure:virtual_traffic_manager:10.4
-
cpe:2.3:a:pulsesecure:virtual_traffic_manager:17.2
-
cpe:2.3:a:pulsesecure:virtual_traffic_manager:9.9