Citrix
Citrix Workspace: vulnerabilidades y CVE
Citrix Workspace tiene 14 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 1 figuran en el catálogo de explotación activa de CISA.
CVE14
Últimos 12 meses0
Críticas1
Explotadas activamente1
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2019-11634 | Crítica (9.8) | 8.0% | ⚠ Explotación activa | 22 may 2019 | Citrix Workspace App before 1904 for Windows has Incorrect Access Control. |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-4879 | Alta (7.3) | 0.13% | — | 17 jun 2025 | Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
| CVE-2024-7890 | Media (5.4) | 0.18% | — | 11 sept 2024 | Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
| CVE-2024-7889 | Alta (7) | 0.25% | — | 11 sept 2024 | Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
| CVE-2024-42423 | Alta (7.1) | 0.15% | — | 10 sept 2024 | Citrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogin. A local unauthenticated user with low privileges may potentially… |
| CVE-2024-6286 | Alta (8.5) | 0.39% | — | 10 jul 2024 | Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
| CVE-2024-6149 | Media (4.8) | 0.22% | — | 10 jul 2024 | Redirection of users to a vulnerable URL in Citrix Workspace app for HTML5 |
| CVE-2024-6148 | Media (5.3) | 0.40% | — | 10 jul 2024 | Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5 |
| CVE-2023-24486 | Media (5.5) | 0.18% | — | 10 jul 2023 | A vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious local user being able to gain access to the Citrix Virtual Apps and Desktops session of another user… |
| CVE-2023-24485 | Alta (7.8) | 0.22% | — | 16 feb 2023 | Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix Workspace app. |
| CVE-2023-24484 | Media (5.5) | 0.26% | — | 16 feb 2023 | A malicious user can cause log files to be written to a directory that they do not have permission to write to. |
| CVE-2022-21825 | Alta (7.8) | 0.22% | — | 9 feb 2022 | An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection installed that can allow an attacker to perform local privilege escalation. |
| CVE-2021-22907 | Alta (7.8) | 0.24% | — | 27 may 2021 | An improper access control vulnerability exists in Citrix Workspace App for Windows potentially allows privilege escalation in CR versions prior to 2105 and 1912 LTSR prior to CU4. |
| CVE-2020-8207 | Alta (8.8) | 2.1% | — | 24 jul 2020 | Improper access control in Citrix Workspace app for Windows 1912 CU1 and 2006.1 causes privilege escalation and code execution when the automatic updater service is running. |
| CVE-2019-11634 | Crítica (9.8) | 8.0% | ⚠ Explotación activa | 22 may 2019 | Citrix Workspace App before 1904 for Windows has Incorrect Access Control. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
📰 Noticias relacionadas
Otros productos de Citrix
Xenserver · 55Netscaler Gateway · 45Netscaler Application Delivery Controller · 39Netscaler Gateway Firmware · 31Application Delivery Controller Firmware · 30Netscaler Application Delivery Controller Firmware · 29Xenmobile Server · 22Gateway · 19Sd-wan · 18Netscaler Sd-wan · 16Gateway Firmware · 15Access Gateway · 14