Citrix NetScaler 10.5

CPE Details

Citrix NetScaler 10.5
10.5
2015-04-03
14h09 +00:00
2015-04-06
12h36 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:citrix:netscaler:10.5:*:*:*:*:*:*:*

Informations

Vendor

citrix

Product

netscaler

Version

10.5

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2016-2071 2016-02-17 14h00 +00:00 Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, and 10.5.e before Build 59.1305.e allows remote attackers to gain privileges via unspecified NS Web GUI commands.
9.8
Critical
CVE-2016-2072 2016-02-17 14h00 +00:00 The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, 10.5.e before Build 59.1305.e, and 10.1 allows remote attackers to conduct clickjacking attacks via unspecified vectors.
6.1
Medium
CVE-2015-2838 2015-04-03 12h00 +00:00 Cross-site request forgery (CSRF) vulnerability in Nitro API in Citrix NetScaler before 10.5 build 52.3nc allows remote attackers to hijack the authentication of administrators for requests that execute arbitrary commands as nsroot via shell metacharacters in the file_name JSON member in params/xen_hotfix/0 to nitro/v1/config/xen_hotfix.
6.8
CVE-2015-2839 2015-04-03 12h00 +00:00 The Nitro API in Citrix NetScaler before 10.5 build 52.3nc uses an incorrect Content-Type when returning an error message, which allows remote attackers to conduct cross-site scripting (XSS) attacks via the file_name JSON member in params/xen_hotfix/0 to nitro/v1/config/xen_hotfix.
4.3
CVE-2015-2840 2015-04-03 12h00 +00:00 Cross-site scripting (XSS) vulnerability in help/rt/large_search.html in Citrix NetScaler before 10.5 build 52.3nc allows remote attackers to inject arbitrary web script or HTML via the searchQuery parameter.
4.3
CVE-2015-2841 2015-04-03 12h00 +00:00 Citrix NetScaler AppFirewall, as used in NetScaler 10.5, allows remote attackers to bypass intended firewall restrictions via a crafted Content-Type header, as demonstrated by the application/octet-stream and text/xml Content-Types.
5