Vulnerability index

Browse CVEs

331 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vdi In A Box HIGH 7.5
CVE-2014-3780

Unspecified vulnerability in Citrix VDI-In-A-Box 5.3.x before 5.3.8 and 5.4.x before 5.4.4 allows remote attackers to bypass authentication via unspe…

Mitigation only
Fix from $1,950 2014-05-30
Cloudplatform HIGH 7.5
CVE-2013-2757

Citrix CloudPlatform (formerly Citrix CloudStack) 3.0.x before 3.0.6 Patch C does not properly restrict access to VNC ports on the management network…

Patch available
Fix from $1,950 2014-05-23
Netscaler Access Gateway Firmware HIGH 10.0
CVE-2014-2881

Unspecified vulnerability in the Diffie-Hellman key agreement implementation in the management GUI Java applet in Citrix NetScaler Application Delive…

Fix: after 10.1.e
Fix from $1,950 2014-05-01
Netscaler Access Gateway Firmware HIGH 10.0
CVE-2014-2882

Unspecified vulnerability in the management GUI in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 9.3-66.5 and 1…

Fix: after 10.1.e
Fix from $1,950 2014-05-01
Netscaler Application Delivery Controller Firmware HIGH 10.0
CVE-2013-6941

Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.…

Mitigation only
Fix from $1,950 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 6.8
CVE-2013-6942

Cross-site request forgery (CSRF) vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6939

Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6940

Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 logs user credentials…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6943

Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 allows remote attacke…

Mitigation only
Fix from $1,600 2014-03-11
Netscaler Application Delivery Controller Firmware MEDIUM 5.0
CVE-2013-6938

Unspecified vulnerability in the Service VM in Citrix NetScaler SDX 9.3 before 9.3-64.4 and 10.0 before 10.0-77.5 and Application Delivery Controller…

Mitigation only
Fix from $1,600 2014-03-11
Sharefile Mobile MEDIUM 5.8
CVE-2014-1910

Citrix ShareFile Mobile and ShareFile Mobile for Tablets before 2.4.4 for Android do not verify X.509 certificates from SSL servers, which allow man-…

Fix: after 2.4
Fix from $1,600 2014-02-21
Xenmobile Device Manager MEDIUM 5.0
CVE-2014-1663

Unspecified vulnerability in Citrix XenMobile Device Manager server (formerly Zenprise Device Manager server) 8.5, 8.6, and MDM 8.0.1 allows remote a…

No fix yet
Fix from $1,600 2014-02-06
Gotomeeting MEDIUM 5.0
CVE-2014-1664

The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain use…

No fix yet
Fix from $1,600 2014-01-26
Xendesktop MEDIUM 5.8
CVE-2013-6077

Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass …

Mitigation only
Fix from $1,600 2013-11-05
Netscaler Application Delivery Controller Firmware HIGH 7.8
CVE-2013-6011

Citrix NetScaler Application Delivery Controller (ADC) 10.0 before 10.0-76.7 allows remote attackers to cause a denial of service (nsconfigd crash an…

Mitigation only
Fix from $1,950 2013-10-04
Cloudportal Services Manager HIGH 10.0
CVE-2013-2933

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

No fix yet
Fix from $1,950 2013-09-12
Cloudportal Services Manager HIGH 10.0
CVE-2013-2934

Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 does not properly restrict access to web services, which has unspeci…

Fix: after 10.0
Fix from $1,950 2013-09-12
Cloudportal Services Manager HIGH 10.0
CVE-2013-2935

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

Fix: after 10.0
Fix from $1,950 2013-09-12
Cloudportal Services Manager HIGH 10.0
CVE-2013-2936

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

Fix: after 10.0
Fix from $1,950 2013-09-12
Cloudportal Services Manager HIGH 10.0
CVE-2013-2937

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

Fix: after 10.0
Fix from $1,950 2013-09-12
Cloudportal Services Manager HIGH 10.0
CVE-2013-2938

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

Fix: after 10.0
Fix from $1,950 2013-09-12
Cloudportal Services Manager HIGH 10.0
CVE-2013-2939

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

Fix: after 10.0
Fix from $1,950 2013-09-12
Cloudportal Services Manager HIGH 10.0
CVE-2013-2940

Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, …

Fix: after 10.0
Fix from $1,950 2013-09-12
Xenclient Xt HIGH 7.5
CVE-2013-2601

The NDVM in Citrix XenClient XT before 2.1.3 and 3.x before 3.1.4 allows remote attackers to execute arbitrary commands by using the UIVM to create a…

Fix: after 2.1.2
Fix from $1,950 2013-09-12
Netscaler Access Gateway Firmware MEDIUM 5.4
CVE-2013-2767

Unspecified vulnerability in Citrix NetScaler Access Gateway Enterprise Edition (AGEE) before 9.3.62.4 and 10.x through 10.0.74.4, and NetScaler AGEE…

Fix: after 9.3.61.5
Fix from $1,600 2013-04-25
Access Gateway MEDIUM 5.0
CVE-2013-2263

Unspecified vulnerability in Citrix Access Gateway Standard Edition 5.0.x before 5.0.4.223524 allows remote attackers to access network resources via…

No fix yet
Fix from $1,600 2013-03-19
Xenapp HIGH 9.3
CVE-2012-5161EPSS 6%

The XML Service interface in Citrix XenApp 6.5 and 6.5 Feature Pack 1 allows remote attackers to execute arbitrary code via unspecified vectors.

Mitigation only
Fix from $1,950 2012-12-26
Xendesktop MEDIUM 5.0
CVE-2012-6314

Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does …

Mitigation only
Fix from $1,600 2012-12-26
Xenserver MEDIUM 6.9
CVE-2012-3516

The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows local guest kernels or administra…

Fix: after 6.0.2
Fix from $1,600 2012-11-23
Xenserver MEDIUM 6.1
CVE-2012-3495

The physdev_get_free_pirq hypercall in arch/x86/physdev.c in Xen 4.1.x and Citrix XenServer 6.0.2 and earlier uses the return value of the get_free_p…

Fix: after 6.0.2
Fix from $1,600 2012-11-23