Vulnerability index

Browse CVEs

92 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Netscaler Gateway Firmware HIGH 7.5
CVE-2018-6810

Directory traversal vulnerability in NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allows remote attacke…

Mitigation only
Fix from $1,950 2018-03-06
Netscaler Application Delivery Controller HIGH 7.5
CVE-2018-5314

Command injection vulnerability in Citrix NetScaler ADC and NetScaler Gateway 11.0 before build 70.16, 11.1 before build 55.13, and 12.0 before build…

Mitigation only
Fix from $1,950 2018-03-01
Netscaler HIGH 8.8
CVE-2018-6186

Citrix NetScaler VPX through NS12.0 53.13.nc allows an SSRF attack via the /rapi/read_url URI by an authenticated attacker who has a webapp account. …

Mitigation only
Fix from $1,950 2018-02-01
Application Delivery Controller Firmware MEDIUM 5.9
CVE-2017-17382EPSS 14%

Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.1…

Mitigation only
Fix from $1,600 2017-12-13
Application Delivery Controller Firmware MEDIUM 5.9
CVE-2017-17549

Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.1…

Mitigation only
Fix from $1,600 2017-12-13
Netscaler Application Delivery Controller MEDIUM 5.9
CVE-2015-3642

The TLS and DTLS processing functionality in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway devices with firmware 9.x b…

Mitigation only
Fix from $1,600 2017-08-02
Xenmobile Server HIGH 7.5
CVE-2017-9231

XML external entity (XXE) vulnerability in Citrix XenMobile Server 9.x and 10.x before 10.5 RP3 allows attackers to obtain sensitive information via …

Mitigation only
Fix from $1,950 2017-06-16
Xenserver HIGH 7.5
CVE-2016-9637

The (1) ioport_read and (2) ioport_write functions in Xen, when qemu is used as a device model within Xen, might allow local x86 HVM guest OS adminis…

Mitigation only
Fix from $1,950 2017-02-17
Xenserver MEDIUM 6.5
CVE-2017-5572

An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host datab…

Mitigation only
Fix from $1,600 2017-01-30
Provisioning Services CRITICAL 9.8
CVE-2016-9679

Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code by overwriting a function pointer.

Mitigation only
Fix from $2,300 2017-01-18
Provisioning Services HIGH 7.5
CVE-2016-9680

Citrix Provisioning Services before 7.12 allows attackers to obtain sensitive information from kernel memory via unspecified vectors.

Mitigation only
Fix from $1,950 2017-01-18
Provisioning Services CRITICAL 9.8
CVE-2016-9676

Buffer overflow in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors.

Mitigation only
Fix from $2,300 2017-01-18
Provisioning Services CRITICAL 9.8
CVE-2016-9678

Use-after-free vulnerability in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors.

Mitigation only
Fix from $2,300 2017-01-18
Provisioning Services MEDIUM 5.3
CVE-2016-9677

Citrix Provisioning Services before 7.12 allows attackers to obtain sensitive kernel address information via unspecified vectors.

Mitigation only
Fix from $1,600 2017-01-18
Receiver Desktop MEDIUM 6.8
CVE-2016-9111

Incorrect access control mechanisms in Citrix Receiver Desktop Lock 4.5 allow an attacker to bypass the authentication requirement by leveraging phys…

No fix yet
Fix from $1,600 2016-11-07
Xenapp HIGH 7.5
CVE-2016-4810

Citrix Studio before 7.6.1000, Citrix XenDesktop 7.x before 7.6 LTSR Cumulative Update 1 (CU1), and Citrix XenApp 7.5 and 7.6 allow attackers to set …

Mitigation only
Fix from $1,950 2016-06-01
Command Center HIGH 8.1
CVE-2015-7999

Multiple SQL injection vulnerabilities in the Administration Web UI servlets in Citrix Command Center before 5.1 Build 36.7 and 5.2 before Build 44.1…

Mitigation only
Fix from $1,950 2016-04-14
Netscaler MEDIUM 6.1
CVE-2016-2072

The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 b…

Mitigation only
Fix from $1,600 2016-02-17
Netscaler CRITICAL 9.8
CVE-2016-2071

Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, and 10.5.e b…

Mitigation only
Fix from $2,300 2016-02-17
Netscaler Application Delivery Controller Firmware HIGH 10.0
CVE-2015-5538

Multiple unspecified vulnerabilities in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 10.1 Build 132.8, 10.5 be…

Mitigation only
Fix from $1,950 2015-09-17
Netscaler Application Delivery Controller Firmware HIGH 9.0
CVE-2015-5080

The Management Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.1 before 10.1.132.8, 10.5 before Build 56…

Mitigation only
Fix from $1,950 2015-07-16
Netscaler MEDIUM 5.0
CVE-2015-2841EPSS 6%

Citrix NetScaler AppFirewall, as used in NetScaler 10.5, allows remote attackers to bypass intended firewall restrictions via a crafted Content-Type …

No fix yet
Fix from $1,600 2015-04-03
Netscaler MEDIUM 6.8
CVE-2015-2838

Cross-site request forgery (CSRF) vulnerability in Nitro API in Citrix NetScaler before 10.5 build 52.3nc allows remote attackers to hijack the authe…

No fix yet
Fix from $1,600 2015-04-03
Command Center HIGH 7.5
CVE-2015-2683EPSS 5%

Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 does not properly restrict access to the Advent Java Management Extensions (JMX…

No fix yet
Fix from $1,950 2015-03-26
Command Center MEDIUM 5.0
CVE-2015-2682EPSS 11%

Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 allows remote attackers to obtain credentials via a direct request to conf/secu…

No fix yet
Fix from $1,600 2015-03-26
Netscaler Application Delivery Controller Firmware HIGH 7.5
CVE-2014-7140EPSS 16%

Unspecified vulnerability in the management interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.x before 10.…

Mitigation only
Fix from $1,950 2014-10-21
Xenserver HIGH 10.0
CVE-2014-4947EPSS 5%

Buffer overflow in the HVM graphics console support in Citrix XenServer 6.2 Service Pack 1 and earlier has unspecified impact and attack vectors.

Mitigation only
Fix from $1,950 2014-07-22
Xenserver MEDIUM 6.4
CVE-2014-4948

Unspecified vulnerability in Citrix XenServer 6.2 Service Pack 1 and earlier allows attackers to cause a denial of service and obtain sensitive infor…

Mitigation only
Fix from $1,600 2014-07-22
Netscaler Access Gateway Firmware MEDIUM 5.0
CVE-2014-4347

Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway (formerly Access Gateway Enterprise Edition) before 9.3-62.4 and 10.x be…

No fix yet
Fix from $1,600 2014-07-16
Access Gateway Plug In HIGH 9.3
CVE-2011-2592EPSS 15%

Heap-based buffer overflow in the StartEpa method in the nsepacom ActiveX control (nsepa.exe) in Citrix Access Gateway Enterprise Edition Plug-in for…

Mitigation only
Fix from $1,950 2014-06-18