Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2014-3780
Unspecified vulnerability in Citrix VDI-In-A-Box 5.3.x before 5.3.8 and 5.4.x before 5.4.4 allows remote attackers to bypass authentication via unspe…
Vdi In A Box
Mitigation only
HIGH 10.0
CVE-2013-6941
Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.…
Netscaler Application Delivery Controller Firmware
Mitigation only
MEDIUM 6.8
CVE-2013-6942
Cross-site request forgery (CSRF) vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.…
Netscaler Application Delivery Controller Firmware
Mitigation only
MEDIUM 5.0
CVE-2013-6939
Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.…
Netscaler Application Delivery Controller Firmware
Mitigation only
MEDIUM 5.0
CVE-2013-6940
Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 logs user credentials…
Netscaler Application Delivery Controller Firmware
Mitigation only
MEDIUM 5.0
CVE-2013-6943
Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 allows remote attacke…
Netscaler Application Delivery Controller Firmware
Mitigation only
MEDIUM 5.0
CVE-2013-6938
Unspecified vulnerability in the Service VM in Citrix NetScaler SDX 9.3 before 9.3-64.4 and 10.0 before 10.0-77.5 and Application Delivery Controller…
Netscaler Application Delivery Controller Firmware
Mitigation only
MEDIUM 5.0
CVE-2014-1663
Unspecified vulnerability in Citrix XenMobile Device Manager server (formerly Zenprise Device Manager server) 8.5, 8.6, and MDM 8.0.1 allows remote a…
Xenmobile Device Manager
No fix yet
MEDIUM 5.0
CVE-2014-1664
The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain use…
Gotomeeting
No fix yet
MEDIUM 5.8
CVE-2013-6077
Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass …
Xendesktop
Mitigation only
HIGH 7.8
CVE-2013-6011
Citrix NetScaler Application Delivery Controller (ADC) 10.0 before 10.0-76.7 allows remote attackers to cause a denial of service (nsconfigd crash an…
Netscaler Application Delivery Controller Firmware
Mitigation only
HIGH 10.0
CVE-2013-2933
Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …
Cloudportal Services Manager
No fix yet
MEDIUM 5.0
CVE-2013-2263
Unspecified vulnerability in Citrix Access Gateway Standard Edition 5.0.x before 5.0.4.223524 allows remote attackers to access network resources via…
Access Gateway
No fix yet
HIGH 9.3
CVE-2012-5161EPSS 6%
The XML Service interface in Citrix XenApp 6.5 and 6.5 Feature Pack 1 allows remote attackers to execute arbitrary code via unspecified vectors.
Xenapp
Mitigation only
MEDIUM 5.0
CVE-2012-6314
Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does …
Xendesktop
Mitigation only
HIGH 9.3
CVE-2011-2882EPSS 56%
Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.…
Access Gateway
Mitigation only
HIGH 9.3
CVE-2011-2883
The NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.0 before 9.0-70.5, and 9.1 befo…
Access Gateway
Mitigation only
MEDIUM 6.8
CVE-2011-1101
Multiple unspecified vulnerabilities in a third-party component of the Citrix Licensing Administration Console 11.6, formerly License Management Cons…
Licensing Administration Console
No fix yet
MEDIUM 5.5
CVE-2010-4238
The vbd_create function in Xen 3.1.2, when the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 is used, allows guest OS users to cause a den…
Xen
No fix yet
HIGH 8.8
CVE-2009-3759
Multiple cross-site request forgery (CSRF) vulnerabilities in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allow remote attackers…
Xencenterweb
No fix yet
HIGH 7.5
CVE-2009-3758
SQL injection vulnerability in login.php in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allows remote attackers to execute arbit…
Xencenterweb
No fix yet
HIGH 7.5
CVE-2009-3760
Static code injection vulnerability in config/writeconfig.php in the sample code in the XenServer Resource Kit in Citrix XenCenterWeb allows remote a…
Xencenterweb
No fix yet
HIGH 7.2
CVE-2008-5716
xend in Xen 3.3.0 does not properly restrict a guest VM's write access within the /local/domain xenstore directory tree, which allows guest OS users …
Xen
Mitigation only
HIGH 7.2
CVE-2008-5121
dne2000.sys in Citrix Deterministic Network Enhancer (DNE) 2.21.7.233 through 3.21.7.17464, as used in (1) Cisco VPN Client, (2) Blue Coat WinProxy, …
Deterministic Network Enhancer
No fix yet
HIGH 7.2
CVE-2008-4405
xend in Xen 3.0.3 does not properly limit the contents of the /local/domain xenstore directory tree, and does not properly restrict a guest VM's writ…
Xen
No fix yet
MEDIUM 5.0
CVE-2007-6193
The web management interface in Citrix NetScaler 8.0 build 47.8 stores the device's primary IP address in a cookie, which might allow remote attacker…
Netscaler
Mitigation only
HIGH 7.2
CVE-2007-0444EPSS 14%
Stack-based buffer overflow in the print provider library (cpprov.dll) in Citrix Presentation Server 4.0, MetaFrame Presentation Server 3.0, and Meta…
Metaframe
Mitigation only
HIGH 7.5
CVE-2005-3134
Citrix Metaframe Presentation Server 3.0 and 4.0 allows remote attackers to bypass policy restrictions by downloading the launch.ica file and changin…
Metaframe
No fix yet
MEDIUM 5.0
CVE-2002-0502
Citrix NFuse 1.6 may allow remote attackers to list applications without authentication by accessing the applist.asp page.
Nfuse
Mitigation only
MEDIUM 5.0
CVE-2002-0301
Citrix NFuse 1.6 allows remote attackers to bypass authentication and obtain sensitive information by directly calling launch.asp with invalid NFUSE_…
Nfuse
Mitigation only