{
  "crds_version": "0.1",
  "kind": "base",
  "id": "crds:cve-2019-11510",
  "revision": 1,
  "title": "Pulse Connect Secure — Unauthenticated Arbitrary File Read",
  "summary": "Pulse Connect Secure gateways answer a specially crafted web address by handing back any file on the appliance to an unauthenticated caller — the remote access gateway reads out its own contents to anyone who asks the right way.",
  "source_type": "cve",
  "severity": "critical",
  "cvss": {
    "score": 10,
    "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
    "version": "3.1"
  },
  "epss": 0.99999,
  "exploitation": {
    "known_exploited": true,
    "exploit_available": true,
    "attack_complexity": "low",
    "kev_added": "2021-11-03",
    "prerequisites": "Network access over encrypted web traffic to an affected gateway (8.2 before 8.2R12.1, 8.3 before 8.3R7.1, 9.0 before 9.0R3.4). No credentials needed."
  },
  "remediation": {
    "patch_available": true,
    "fixed_in": [
      "Pulse Connect Secure 8.2R12.1",
      "Pulse Connect Secure 8.3R7.1",
      "Pulse Connect Secure 9.0R3.4"
    ]
  },
  "mitre_attack": [
    "T1190"
  ],
  "kill_chain": "initial_access",
  "recommended_action": "Upgrade Pulse Connect Secure to 8.2R12.1, 8.3R7.1 or 9.0R3.4 per advisory SA44101; then rotate every credential and session secret the appliance held.",
  "confidence": "high",
  "provenance": [
    {
      "fields": [
        "title",
        "summary",
        "cvss",
        "severity",
        "exploitation.attack_complexity",
        "exploitation.prerequisites",
        "exploitation.exploit_available",
        "remediation",
        "recommended_action",
        "references"
      ],
      "source": "https://nvd.nist.gov/vuln/detail/CVE-2019-11510",
      "retrieved_at": "2026-08-07T07:53:55.549Z",
      "confidence": "high",
      "extractor": "claude-code"
    },
    {
      "fields": [
        "exploitation.known_exploited"
      ],
      "source": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "retrieved_at": "2026-08-07T07:53:55.549Z",
      "confidence": "high",
      "extractor": "claude-code"
    },
    {
      "fields": [
        "epss"
      ],
      "source": "https://api.first.org/data/v1/epss?cve=CVE-2019-11510",
      "retrieved_at": "2026-08-07T07:53:55.549Z",
      "confidence": "high",
      "extractor": "claude-code"
    }
  ],
  "references": [
    {
      "type": "cve",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-11510",
      "label": "NVD record"
    },
    {
      "type": "vendor_advisory",
      "url": "https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44101/",
      "label": "Pulse Secure advisory SA44101"
    },
    {
      "type": "writeup",
      "url": "https://devco.re/blog/2019/09/02/attacking-ssl-vpn-part-3-the-golden-Pulse-Secure-ssl-vpn-rce-chain-with-Twitter-as-case-study/",
      "label": "DEVCORE: the full exploit chain"
    },
    {
      "type": "cisa",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-11510",
      "label": "CISA Known Exploited Vulnerabilities entry"
    }
  ],
  "published_at": "2019-05-08T17:29:00.630Z",
  "issued_at": "2026-08-07T07:53:55.549Z",
  "tags": [
    "ivanti",
    "pulse-secure",
    "pulse-connect-secure",
    "vpn",
    "file-read",
    "kev",
    "ransomware"
  ]
}
