Vulnerability index

Browse CVEs

331 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Citrix Sd Wan Center MEDIUM 6.1
CVE-2019-11345

Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow XSS.

Fix: 10.0.7 / 10.2.1+
Fix from $1,600 2020-03-10
Gateway Firmware HIGH 7.5
CVE-2020-10111

Citrix Gateway 11.1, 12.0, and 12.1 has an Inconsistent Interpretation of HTTP Requests. NOTE: Citrix disputes the reported behavior as not a securit…

No fix yet
Fix from $1,950 2020-03-06
Gateway Firmware MEDIUM 5.4
CVE-2020-10112

Citrix Gateway 11.1, 12.0, and 12.1 allows Cache Poisoning. NOTE: Citrix disputes this as not a vulnerability. By default, Citrix ADC only caches sta…

No fix yet
Fix from $1,600 2020-03-06
Gateway Firmware MEDIUM 5.3
CVE-2020-10110

Citrix Gateway 11.1, 12.0, and 12.1 allows Information Exposure Through Caching. NOTE: Citrix disputes this as not a vulnerability. There is no sensi…

No fix yet
Fix from $1,600 2020-03-06
Xenserver HIGH 7.8
CVE-2012-4606

Citrix XenServer 4.1, 6.0, 5.6 SP2, 5.6 Feature Pack 1, 5.6 Common Criteria, 5.6, 5.5, 5.0, and 5.0 Update 3 contains a Local Privilege Escalation Vu…

Mitigation only
Fix from $1,950 2020-01-23
Receiver HIGH 7.8
CVE-2012-4603EPSS 7%

Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute ar…

Fix: after 12.1
Fix from $1,950 2020-01-10
Netscaler Sdx Firmware HIGH 8.1
CVE-2013-3619EPSS 10%

Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before SMT_X9_317 and firmware for Supermicr…

Fix: 3.12 / 3.15+
Fix from $1,950 2020-01-02
Netscaler Sdx Firmware HIGH 7.5
CVE-2013-3620

Hardcoded WSMan credentials in Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before 3.15 (…

Fix: 3.12 / 3.15+
Fix from $1,950 2020-01-02
Application Delivery Controller Firmware CRITICAL 9.8
CVE-2019-19781 KEVEPSS 100%

An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. They allow Directory Traversal.

Mitigation only
Fix from $2,300 2019-12-27
Application Delivery Controller Firmware CRITICAL 9.8
CVE-2019-18225

An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway before 10.5 build 70.8, 11.x before 11.1 build 63.9, 12.0 before …

Mitigation only
Fix from $2,300 2019-10-21
Application Delivery Management HIGH 8.8
CVE-2019-17366

Citrix Application Delivery Management (ADM) 12.1 before build 54.13 has Incorrect Access Control.

No fix yet
Fix from $1,950 2019-10-09
Storefront Server HIGH 7.5
CVE-2019-13608 KEVEPSS 30%

Citrix StoreFront Server before 1903, 7.15 LTSR before CU4 (3.12.4000), and 7.6 LTSR before CU8 (3.0.8000) allows XXE attacks.

Fix: 3.0.8000 / 3.12.4000+
Fix from $1,950 2019-08-29
Netscaler Sd Wan CRITICAL 9.8
CVE-2019-12990EPSS 39%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal.

Fix: 10.0.8 / 10.2.3+
Fix from $2,300 2019-07-16
Netscaler Sd Wan HIGH 8.8
CVE-2019-12991 KEVEPSS 74%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 5 of 6).

Fix: 10.0.8 / 10.2.3+
Fix from $1,950 2019-07-16
Netscaler Sd Wan HIGH 8.8
CVE-2019-12992EPSS 49%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 6 of 6).

Fix: 10.0.8 / 10.2.3+
Fix from $1,950 2019-07-16
Netscaler Sd Wan CRITICAL 9.8
CVE-2019-12985EPSS 40%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 1 of 6).

Fix: 10.0.8 / 10.2.3+
Fix from $2,300 2019-07-16
Netscaler Sd Wan CRITICAL 9.8
CVE-2019-12986EPSS 40%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of 6).

Fix: 10.0.8 / 10.2.3+
Fix from $2,300 2019-07-16
Netscaler Sd Wan CRITICAL 9.8
CVE-2019-12987EPSS 43%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of 6).

Fix: 10.0.8 / 10.2.3+
Fix from $2,300 2019-07-16
Netscaler Sd Wan CRITICAL 9.8
CVE-2019-12988EPSS 43%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 4 of 6).

Fix: 10.0.8 / 10.2.3+
Fix from $2,300 2019-07-16
Netscaler Sd Wan CRITICAL 9.8
CVE-2019-12989 KEVEPSS 94%

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow SQL Injection.

Fix: 10.0.8 / 10.2.3+
Fix from $2,300 2019-07-16
Xenserver MEDIUM 6.5
CVE-2014-3798

The Windows Guest Tools in Citrix XenServer 6.2 SP1 and earlier allows remote attackers to cause a denial of service (guest OS crash) via a crafted E…

Patch available
Fix from $1,600 2019-07-11
Appdna CRITICAL 9.8
CVE-2019-12292

Citrix AppDNA before 7 1906.1.0.472 has Incorrect Access Control.

Fix: after 7.18
Fix from $2,300 2019-06-24
Application Delivery Management CRITICAL 10.0
CVE-2019-9548

Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.

Fix: after 13.0.33.23
Fix from $2,300 2019-06-05
Xenmobile Server CRITICAL 9.1
CVE-2018-18571

An Incorrect Access Control vulnerability has been identified in Citrix XenMobile Server 10.8.0 before Rolling Patch 6 and 10.9.0 before Rolling Patc…

Mitigation only
Fix from $2,300 2019-06-05
Citrix Sd Wan Center CRITICAL 9.8
CVE-2019-10883EPSS 65%

Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow Command Injection.

Fix: 10.0.7 / 10.2.1+
Fix from $2,300 2019-06-03
Receiver CRITICAL 9.8
CVE-2019-11634 KEVEPSS 8%

Citrix Workspace App before 1904 for Windows has Incorrect Access Control.

Fix: 1904+
Fix from $2,300 2019-05-22
Netscaler Gateway Firmware HIGH 7.5
CVE-2019-12044

A Buffer Overflow exists in Citrix NetScaler Gateway 10.5.x before 10.5.70.x, 11.1.x before 11.1.59.10, 12.0.x before 12.0.59.8, and 12.1.x before 12…

Fix: 10.5.70 / 11.1.59.10+
Fix from $1,950 2019-05-22
Sharefile HIGH 7.5
CVE-2019-7217

Citrix ShareFile before 19.12 allows User Enumeration. It is possible to enumerate application username based on different server responses using the…

Fix: 19.12+
Fix from $1,950 2019-05-13
Sharefile MEDIUM 5.9
CVE-2019-7218

Citrix ShareFile before 19.23 allows a downgrade from two-factor authentication to one-factor authentication. An attacker with access to the offline …

Fix: after 19.1
Fix from $1,600 2019-05-13
Netscaler Sd Wan MEDIUM 5.9
CVE-2019-11550

Citrix SD-WAN 10.2.x before 10.2.1 and NetScaler SD-WAN 10.0.x before 10.0.7 have Improper Certificate Validation.

Fix: 10.0.7 / 10.2.1+
Fix from $1,600 2019-05-08