CVE ID | Publié | Description | Score | Gravité |
---|---|---|---|---|
Arbitrary file read in Citrix ADC and Citrix Gateway | 7.5 |
Haute |
||
Cross site scripting vulnerability in Citrix ADC and Citrix Gateway in allows and attacker to perform cross site scripting | 6.1 |
Moyen |
||
Authenticated denial of service | 6.5 |
Moyen |
||
Unauthenticated denial of service | 7.5 |
Haute |
||
In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update. | 6.5 |
Moyen |
||
User login brute force protection functionality bypass | 9.8 |
Critique |
||
Unauthorized access to Gateway user capabilities | 9.8 |
Critique |
||
Remote desktop takeover via phishing | 9.6 |
Critique |
||
Unauthenticated redirection to a malicious website | 6.1 |
Moyen |