Vulnerabilities > CVE-2007-6192 - Cryptographic Issues vulnerability in Citrix Netscaler 8.0

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
citrix
CWE-310
nessus

Summary

The web management interface in Citrix NetScaler 8.0 build 47.8 uses weak encryption (XOR of unpadded data) to store credentials within a cookie, which makes it easier for remote attackers to obtain cleartext credentials when a cookie is captured via a known-plaintext attack.

Vulnerable Configurations

Part Description Count
Application
Citrix
1

Common Weakness Enumeration (CWE)

Common Attack Pattern Enumeration and Classification (CAPEC)

  • Signature Spoofing by Key Recreation
    An attacker obtains an authoritative or reputable signer's private signature key by exploiting a cryptographic weakness in the signature algorithm or pseudorandom number generation and then uses this key to forge signatures from the original signer to mislead a victim into performing actions that benefit the attacker.

Nessus

NASL familyWeb Servers
NASL idNETSCALER_WEB_COOKIE_CRYPTO.NASL
descriptionThe version of the Citrix NetScaler web management interface on the remote host uses weak encryption for protecting the HTTP cookie content by XORing sensitive values, including the username and password, with a fixed key stream.
last seen2020-06-01
modified2020-06-02
plugin id29220
published2007-12-06
reporterThis script is Copyright (c) 2007-2018 nnposter
sourcehttps://www.tenable.com/plugins/nessus/29220
titleNetScaler Web Management Interface Cookie Credentials Encryption Weakness