Vulnerabilities > Citrix > Access Gateway > 4.5.6

DATE CVE VULNERABILITY TITLE RISK
2011-01-14 CVE-2010-4566 Unspecified vulnerability in Citrix Access Gateway
The web authentication form in the NT4 authentication component in Citrix Access Gateway Enterprise Edition 9.2-49.8 and earlier, and the NTLM authentication component in Access Gateway Standard and Advanced Editions before Access Gateway 5.0, allows attackers to execute arbitrary commands via shell metacharacters in the password field.
network
citrix
critical
9.3
2008-06-03 CVE-2008-2528 Improper Authentication vulnerability in Citrix Access Gateway 4.5.5/4.5.6
Unspecified vulnerability in Citrix Access Gateway Standard Edition 4.5.7 and earlier and Advanced Edition 4.5 HF2 and earlier allows attackers to bypass authentication and gain "access to network resources" via unspecified vectors.
network
low complexity
citrix CWE-287
critical
10.0