Citrix
Citrix Gateway: vulnerabilidades y CVE
Citrix Gateway tiene 19 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE19
Últimos 12 meses0
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-24488 | Media (6.1) | 81% | — | 10 jul 2023 | Cross site scripting vulnerability in Citrix ADC and Citrix Gateway in allows and attacker to perform cross site scripting |
| CVE-2023-24487 | Alta (7.5) | 1.1% | — | 10 jul 2023 | Arbitrary file read in Citrix ADC and Citrix Gateway |
| CVE-2022-27508 | Alta (7.5) | 1.0% | — | 26 ene 2023 | Unauthenticated denial of service |
| CVE-2022-27507 | Media (6.5) | 0.99% | — | 26 ene 2023 | Authenticated denial of service |
| CVE-2019-18177 | Media (6.5) | 0.58% | — | 26 dic 2022 | In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases… |
| CVE-2022-27516 | Crítica (9.8) | 0.64% | — | 8 nov 2022 | User login brute force protection functionality bypass |
| CVE-2022-27513 | Crítica (9.6) | 0.29% | — | 8 nov 2022 | Remote desktop takeover via phishing |
| CVE-2022-27510 | Crítica (9.8) | 1.1% | — | 8 nov 2022 | Unauthorized access to Gateway user capabilities |
| CVE-2022-27509 | Media (6.1) | 0.52% | — | 28 jul 2022 | Unauthenticated redirection to a malicious website |
| CVE-2021-22956 | Alta (7.5) | 0.92% | — | 7 dic 2021 | An uncontrolled resource consumption vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 that could allow an attacker with access to NSIP or SNIP with management interface access to cause a… |
| CVE-2021-22955 | Alta (7.5) | 0.92% | — | 7 dic 2021 | A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when configured as a VPN (Gateway) or AAA virtual server could allow an attacker to cause a temporary… |
| CVE-2021-22927 | Alta (8.1) | 0.84% | — | 5 ago 2021 | A session fixation vulnerability exists in Citrix ADC and Citrix Gateway 13.0-82.45 when configured SAML service provider that could allow an attacker to hijack a session. |
| CVE-2021-22920 | Media (6.5) | 0.92% | — | 5 ago 2021 | A vulnerability has been discovered in Citrix ADC (formerly known as NetScaler ADC) and Citrix Gateway (formerly known as NetScaler Gateway), and Citrix SD-WAN WANOP Edition models 4000-WO, 4100-WO, 5000-WO, and… |
| CVE-2021-22919 | Alta (7.5) | 0.94% | — | 5 ago 2021 | A vulnerability has been discovered in Citrix ADC (formerly known as NetScaler ADC) and Citrix Gateway (formerly known as NetScaler Gateway), and Citrix SD-WAN WANOP Edition models 4000-WO, 4100-WO, 5000-WO, and… |
| CVE-2020-8300 | Media (6.5) | 3.0% | — | 16 jun 2021 | Citrix ADC and Citrix/NetScaler Gateway before 13.0-82.41, 12.1-62.23, 11.1-65.20 and Citrix ADC 12.1-FIPS before 12.1-55.238 suffer from improper access control allowing SAML authentication hijack through a phishing… |
| CVE-2020-8299 | Media (6.5) | 0.42% | — | 16 jun 2021 | Citrix ADC and Citrix/NetScaler Gateway 13.0 before 13.0-76.29, 12.1-61.18, 11.1-65.20, Citrix ADC 12.1-FIPS before 12.1-55.238, and Citrix SD-WAN WANOP Edition before 11.4.0, 11.3.2, 11.3.1a, 11.2.3a, 11.1.2c, 10.2.9a… |
| CVE-2020-8247 | Alta (8.8) | 1.4% | — | 18 sept 2020 | Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix ADC and NetScaler… |
| CVE-2020-8246 | Alta (7.5) | 1.6% | — | 18 sept 2020 | Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix ADC and NetScaler… |
| CVE-2020-8245 | Media (6.1) | 0.93% | — | 18 sept 2020 | Improper Input Validation on Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0,… |
📰 Noticias relacionadas
Otros productos de Citrix
Xenserver · 55Netscaler Gateway · 45Netscaler Application Delivery Controller · 39Netscaler Gateway Firmware · 31Application Delivery Controller Firmware · 30Netscaler Application Delivery Controller Firmware · 29Xenmobile Server · 22Sd-wan · 18Netscaler Sd-wan · 16Gateway Firmware · 15Workspace · 14Access Gateway · 14