Vulnerability index

Browse CVEs

92 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Vdi In A Box HIGH 7.5
CVE-2014-3780

Unspecified vulnerability in Citrix VDI-In-A-Box 5.3.x before 5.3.8 and 5.4.x before 5.4.4 allows remote attackers to bypass authentication via unspe…

Mitigation only
Fix from $1,950 2014-05-30
Netscaler Application Delivery Controller Firmware HIGH 10.0
CVE-2013-6941

Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.…

Mitigation only
Fix from $1,950 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 6.8
CVE-2013-6942

Cross-site request forgery (CSRF) vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6939

Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6940

Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 logs user credentials…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6943

Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 allows remote attacke…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6938

Unspecified vulnerability in the Service VM in Citrix NetScaler SDX 9.3 before 9.3-64.4 and 10.0 before 10.0-77.5 and Application Delivery Controller…

Mitigation only
Fix from $1,600 2014-03-11
Xenmobile Device Manager MEDIUM 5.0
CVE-2014-1663

Unspecified vulnerability in Citrix XenMobile Device Manager server (formerly Zenprise Device Manager server) 8.5, 8.6, and MDM 8.0.1 allows remote a…

No fix yet
Fix from $1,600 2014-02-06
Gotomeeting MEDIUM 5.0
CVE-2014-1664

The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain use…

No fix yet
Fix from $1,600 2014-01-26
Xendesktop MEDIUM 5.8
CVE-2013-6077

Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass …

Mitigation only
Fix from $1,600 2013-11-05
Netscaler Application Delivery Controller Firmware HIGH 7.8
CVE-2013-6011

Citrix NetScaler Application Delivery Controller (ADC) 10.0 before 10.0-76.7 allows remote attackers to cause a denial of service (nsconfigd crash an…

Mitigation only
Fix from $1,950 2013-10-04
Cloudportal Services Manager HIGH 10.0
CVE-2013-2933

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

No fix yet
Fix from $1,950 2013-09-12
Access Gateway MEDIUM 5.0
CVE-2013-2263

Unspecified vulnerability in Citrix Access Gateway Standard Edition 5.0.x before 5.0.4.223524 allows remote attackers to access network resources via…

No fix yet
Fix from $1,600 2013-03-19
Xenapp HIGH 9.3
CVE-2012-5161EPSS 6%

The XML Service interface in Citrix XenApp 6.5 and 6.5 Feature Pack 1 allows remote attackers to execute arbitrary code via unspecified vectors.

Mitigation only
Fix from $1,950 2012-12-26
Xendesktop MEDIUM 5.0
CVE-2012-6314

Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does …

Mitigation only
Fix from $1,600 2012-12-26
Access Gateway HIGH 9.3
CVE-2011-2882EPSS 56%

Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.…

Mitigation only
Fix from $1,950 2011-07-21
Access Gateway HIGH 9.3
CVE-2011-2883

The NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.0 before 9.0-70.5, and 9.1 befo…

Mitigation only
Fix from $1,950 2011-07-21
Licensing Administration Console MEDIUM 6.8
CVE-2011-1101

Multiple unspecified vulnerabilities in a third-party component of the Citrix Licensing Administration Console 11.6, formerly License Management Cons…

No fix yet
Fix from $1,600 2011-02-25
Xen MEDIUM 5.5
CVE-2010-4238

The vbd_create function in Xen 3.1.2, when the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 is used, allows guest OS users to cause a den…

No fix yet
Fix from $1,600 2011-01-22
Xencenterweb HIGH 8.8
CVE-2009-3759

Multiple cross-site request forgery (CSRF) vulnerabilities in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allow remote attackers…

No fix yet
Fix from $1,950 2009-10-22
Xencenterweb HIGH 7.5
CVE-2009-3758

SQL injection vulnerability in login.php in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allows remote attackers to execute arbit…

No fix yet
Fix from $1,950 2009-10-22
Xencenterweb HIGH 7.5
CVE-2009-3760

Static code injection vulnerability in config/writeconfig.php in the sample code in the XenServer Resource Kit in Citrix XenCenterWeb allows remote a…

No fix yet
Fix from $1,950 2009-10-22
Xen HIGH 7.2
CVE-2008-5716

xend in Xen 3.3.0 does not properly restrict a guest VM's write access within the /local/domain xenstore directory tree, which allows guest OS users …

Mitigation only
Fix from $1,950 2008-12-24
Deterministic Network Enhancer HIGH 7.2
CVE-2008-5121

dne2000.sys in Citrix Deterministic Network Enhancer (DNE) 2.21.7.233 through 3.21.7.17464, as used in (1) Cisco VPN Client, (2) Blue Coat WinProxy, …

No fix yet
Fix from $1,950 2008-11-18
Xen HIGH 7.2
CVE-2008-4405

xend in Xen 3.0.3 does not properly limit the contents of the /local/domain xenstore directory tree, and does not properly restrict a guest VM's writ…

No fix yet
Fix from $1,950 2008-10-03
Netscaler MEDIUM 5.0
CVE-2007-6193

The web management interface in Citrix NetScaler 8.0 build 47.8 stores the device's primary IP address in a cookie, which might allow remote attacker…

Mitigation only
Fix from $1,600 2007-11-30
Metaframe HIGH 7.2
CVE-2007-0444EPSS 14%

Stack-based buffer overflow in the print provider library (cpprov.dll) in Citrix Presentation Server 4.0, MetaFrame Presentation Server 3.0, and Meta…

Mitigation only
Fix from $1,950 2007-01-24
Metaframe HIGH 7.5
CVE-2005-3134

Citrix Metaframe Presentation Server 3.0 and 4.0 allows remote attackers to bypass policy restrictions by downloading the launch.ica file and changin…

No fix yet
Fix from $1,950 2005-10-04
Nfuse MEDIUM 5.0
CVE-2002-0502

Citrix NFuse 1.6 may allow remote attackers to list applications without authentication by accessing the applist.asp page.

Mitigation only
Fix from $1,600 2002-08-12
Nfuse MEDIUM 5.0
CVE-2002-0301

Citrix NFuse 1.6 allows remote attackers to bypass authentication and obtain sensitive information by directly calling launch.asp with invalid NFUSE_…

Mitigation only
Fix from $1,600 2002-05-31