Vulnerability index

Browse CVEs

92 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2018-6810 Directory traversal vulnerability in NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allows remote attacke… Netscaler Gateway Firmware Mitigation only Fix from $1,9502018-03-06 HIGH 7.5 CVE-2018-5314 Command injection vulnerability in Citrix NetScaler ADC and NetScaler Gateway 11.0 before build 70.16, 11.1 before build 55.13, and 12.0 before build… Netscaler Application Delivery Controller Mitigation only Fix from $1,9502018-03-01 HIGH 8.8 CVE-2018-6186 Citrix NetScaler VPX through NS12.0 53.13.nc allows an SSRF attack via the /rapi/read_url URI by an authenticated attacker who has a webapp account. … Netscaler Mitigation only Fix from $1,9502018-02-01 MEDIUM 5.9 CVE-2017-17382EPSS 14% Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.1… Application Delivery Controller Firmware Mitigation only Fix from $1,6002017-12-13 MEDIUM 5.9 CVE-2017-17549 Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.1… Application Delivery Controller Firmware Mitigation only Fix from $1,6002017-12-13 MEDIUM 5.9 CVE-2015-3642 The TLS and DTLS processing functionality in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway devices with firmware 9.x b… Netscaler Application Delivery Controller Mitigation only Fix from $1,6002017-08-02 HIGH 7.5 CVE-2017-9231 XML external entity (XXE) vulnerability in Citrix XenMobile Server 9.x and 10.x before 10.5 RP3 allows attackers to obtain sensitive information via … Xenmobile Server Mitigation only Fix from $1,9502017-06-16 HIGH 7.5 CVE-2016-9637 The (1) ioport_read and (2) ioport_write functions in Xen, when qemu is used as a device model within Xen, might allow local x86 HVM guest OS adminis… Xenserver Mitigation only Fix from $1,9502017-02-17 MEDIUM 6.5 CVE-2017-5572 An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host datab… Xenserver Mitigation only Fix from $1,6002017-01-30 CRITICAL 9.8 CVE-2016-9679 Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code by overwriting a function pointer. Provisioning Services Mitigation only Fix from $2,3002017-01-18 HIGH 7.5 CVE-2016-9680 Citrix Provisioning Services before 7.12 allows attackers to obtain sensitive information from kernel memory via unspecified vectors. Provisioning Services Mitigation only Fix from $1,9502017-01-18 CRITICAL 9.8 CVE-2016-9676 Buffer overflow in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors. Provisioning Services Mitigation only Fix from $2,3002017-01-18 CRITICAL 9.8 CVE-2016-9678 Use-after-free vulnerability in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors. Provisioning Services Mitigation only Fix from $2,3002017-01-18 MEDIUM 5.3 CVE-2016-9677 Citrix Provisioning Services before 7.12 allows attackers to obtain sensitive kernel address information via unspecified vectors. Provisioning Services Mitigation only Fix from $1,6002017-01-18 MEDIUM 6.8 CVE-2016-9111 Incorrect access control mechanisms in Citrix Receiver Desktop Lock 4.5 allow an attacker to bypass the authentication requirement by leveraging phys… Receiver Desktop No fix yet Fix from $1,6002016-11-07 HIGH 7.5 CVE-2016-4810 Citrix Studio before 7.6.1000, Citrix XenDesktop 7.x before 7.6 LTSR Cumulative Update 1 (CU1), and Citrix XenApp 7.5 and 7.6 allow attackers to set … Xenapp Mitigation only Fix from $1,9502016-06-01 HIGH 8.1 CVE-2015-7999 Multiple SQL injection vulnerabilities in the Administration Web UI servlets in Citrix Command Center before 5.1 Build 36.7 and 5.2 before Build 44.1… Command Center Mitigation only Fix from $1,9502016-04-14 MEDIUM 6.1 CVE-2016-2072 The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 b… Netscaler Mitigation only Fix from $1,6002016-02-17 CRITICAL 9.8 CVE-2016-2071 Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, and 10.5.e b… Netscaler Mitigation only Fix from $2,3002016-02-17 HIGH 10.0 CVE-2015-5538 Multiple unspecified vulnerabilities in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 10.1 Build 132.8, 10.5 be… Netscaler Application Delivery Controller Firmware Mitigation only Fix from $1,9502015-09-17 HIGH 9.0 CVE-2015-5080 The Management Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.1 before 10.1.132.8, 10.5 before Build 56… Netscaler Application Delivery Controller Firmware Mitigation only Fix from $1,9502015-07-16 MEDIUM 5.0 CVE-2015-2841EPSS 6% Citrix NetScaler AppFirewall, as used in NetScaler 10.5, allows remote attackers to bypass intended firewall restrictions via a crafted Content-Type … Netscaler No fix yet Fix from $1,6002015-04-03 MEDIUM 6.8 CVE-2015-2838 Cross-site request forgery (CSRF) vulnerability in Nitro API in Citrix NetScaler before 10.5 build 52.3nc allows remote attackers to hijack the authe… Netscaler No fix yet Fix from $1,6002015-04-03 HIGH 7.5 CVE-2015-2683EPSS 5% Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 does not properly restrict access to the Advent Java Management Extensions (JMX… Command Center No fix yet Fix from $1,9502015-03-26 MEDIUM 5.0 CVE-2015-2682EPSS 11% Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 allows remote attackers to obtain credentials via a direct request to conf/secu… Command Center No fix yet Fix from $1,6002015-03-26 HIGH 7.5 CVE-2014-7140EPSS 16% Unspecified vulnerability in the management interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.x before 10.… Netscaler Application Delivery Controller Firmware Mitigation only Fix from $1,9502014-10-21 HIGH 10.0 CVE-2014-4947EPSS 5% Buffer overflow in the HVM graphics console support in Citrix XenServer 6.2 Service Pack 1 and earlier has unspecified impact and attack vectors. Xenserver Mitigation only Fix from $1,9502014-07-22 MEDIUM 6.4 CVE-2014-4948 Unspecified vulnerability in Citrix XenServer 6.2 Service Pack 1 and earlier allows attackers to cause a denial of service and obtain sensitive infor… Xenserver Mitigation only Fix from $1,6002014-07-22 MEDIUM 5.0 CVE-2014-4347 Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway (formerly Access Gateway Enterprise Edition) before 9.3-62.4 and 10.x be… Netscaler Access Gateway Firmware No fix yet Fix from $1,6002014-07-16 HIGH 9.3 CVE-2011-2592EPSS 15% Heap-based buffer overflow in the StartEpa method in the nsepacom ActiveX control (nsepa.exe) in Citrix Access Gateway Enterprise Edition Plug-in for… Access Gateway Plug In Mitigation only Fix from $1,9502014-06-18