Citrix Gateway Firmware 13.0

CPE Details

Citrix Gateway Firmware 13.0
13.0
2019-10-29
13h18 +00:00
2019-10-29
13h18 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:citrix:gateway_firmware:13.0:*:*:*:*:*:*:*

Informations

Vendor

citrix

Product

gateway_firmware

Version

13.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2022-27518 2022-12-13 00h00 +00:00 Unauthenticated remote arbitrary code execution
9.8
Critique
CVE-2020-8196 2020-07-10 15h39 +00:00 Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.
4.3
Moyen
CVE-2020-8195 2020-07-10 15h39 +00:00 Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.
6.5
Moyen
CVE-2020-8193 2020-07-10 15h38 +00:00 Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows unauthenticated access to certain URL endpoints.
6.5
Moyen
CVE-2020-8197 2020-07-10 13h40 +00:00 Privilege escalation vulnerability on Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 allows a low privileged user with management access to execute arbitrary commands.
8.8
Haute
CVE-2020-8198 2020-07-10 13h39 +00:00 Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in Stored Cross-Site Scripting (XSS).
6.1
Moyen
CVE-2020-8194 2020-07-10 13h38 +00:00 Reflected code injection in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows the modification of a file download.
6.5
Moyen
CVE-2020-8191 2020-07-10 13h38 +00:00 Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows reflected Cross Site Scripting (XSS).
6.1
Moyen
CVE-2020-8190 2020-07-10 13h32 +00:00 Incorrect file permissions in Citrix ADC and Citrix Gateway before versions 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 allows privilege escalation.
7.5
Haute
CVE-2019-19781 2019-12-27 13h06 +00:00 An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. They allow Directory Traversal.
9.8
Critique
CVE-2019-18225 2019-10-21 15h09 +00:00 An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway before 10.5 build 70.8, 11.x before 11.1 build 63.9, 12.0 before build 62.10, 12.1 before build 54.16, and 13.0 before build 41.28. An attacker with management-interface access can bypass authentication to obtain appliance administrative access. These products formerly used the NetScaler brand name.
9.8
Critique