AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-11540

CRITICAL · CVSS 9.8 EPSS 8.26%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-04-26 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.

CVE
CVE-2019-11540
Severity
CRITICAL
CVSS
9.8
EPSS
8.26%

Original NVD Description

In Pulse Secure Pulse Connect Secure version 9.0RX before 9.0R3.4 and 8.3RX before 8.3R7.1 and Pulse Policy Secure version 9.0RX before 9.0R3.2 and 5.4RX before 5.4R7.1, an unauthenticated, remote attacker can conduct a session hijacking attack.

Related CVEs

Other vulnerabilities affecting the same vendor(s)