Vulnerabilities > Citrix > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-06-24 CVE-2019-12292 Unspecified vulnerability in Citrix Appdna 7.18
Citrix AppDNA before 7 1906.1.0.472 has Incorrect Access Control.
network
low complexity
citrix
critical
9.8
2019-06-05 CVE-2019-9548 Unspecified vulnerability in Citrix Application Delivery Management
Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
network
low complexity
citrix
critical
10.0
2019-06-05 CVE-2018-18571 Improper Authentication vulnerability in Citrix Xenmobile Server 10.8.0/10.9.0
An Incorrect Access Control vulnerability has been identified in Citrix XenMobile Server 10.8.0 before Rolling Patch 6 and 10.9.0 before Rolling Patch 3.
network
low complexity
citrix CWE-287
critical
9.1
2019-06-03 CVE-2019-10883 OS Command Injection vulnerability in Citrix Sd-Wan Center and Netscaler Sd-Wan Center
Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow Command Injection.
network
low complexity
citrix CWE-78
critical
9.8
2019-05-22 CVE-2019-11634 Unspecified vulnerability in Citrix Receiver and Workspace
Citrix Workspace App before 1904 for Windows has Incorrect Access Control.
network
low complexity
citrix
critical
9.8
2018-10-23 CVE-2018-17448 Unspecified vulnerability in Citrix Netscaler Sd-Wan and Sd-Wan
An Incorrect Access Control issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
network
low complexity
citrix
critical
9.8
2018-10-23 CVE-2018-17446 SQL Injection vulnerability in Citrix Netscaler Sd-Wan and Sd-Wan
A SQL Injection issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
network
low complexity
citrix CWE-89
critical
9.8
2018-10-23 CVE-2018-17445 Command Injection vulnerability in Citrix Netscaler Sd-Wan and Sd-Wan
A Command Injection issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
network
low complexity
citrix CWE-77
critical
9.8
2018-08-15 CVE-2018-14007 Path Traversal vulnerability in Citrix Xenserver 7.1/7.4/7.5
Citrix XenServer 7.1 and newer allows Directory Traversal.
network
low complexity
citrix CWE-22
critical
9.8
2018-07-27 CVE-2016-9603 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update its display after a VGA operation is performed by a guest.
network
low complexity
qemu redhat citrix debian CWE-119
critical
9.9