Vulnerabilities > Citrix > Critical

DATE CVE VULNERABILITY TITLE RISK
2014-06-18 CVE-2011-2592 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Citrix Access Gateway Plug-In
Heap-based buffer overflow in the StartEpa method in the nsepacom ActiveX control (nsepa.exe) in Citrix Access Gateway Enterprise Edition Plug-in for Windows 9.x before 9.3-57.5 and 10.0 before 10.0-69.4 allows remote attackers to execute arbitrary code via a long CSEC HTTP response header.
network
citrix CWE-119
critical
9.3
2014-05-01 CVE-2014-2882 Unspecified vulnerability in Citrix products
Unspecified vulnerability in the management GUI in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 9.3-66.5 and 10.x before 10.1-122.17 has unspecified impact and vectors, related to certificate validation.
network
low complexity
citrix
critical
10.0
2014-05-01 CVE-2014-2881 Security vulnerability in Citrix NetScaler
Unspecified vulnerability in the Diffie-Hellman key agreement implementation in the management GUI Java applet in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 9.3-66.5 and 10.x before 10.1-122.17 has unknown impact and vectors.
network
low complexity
citrix
critical
10.0
2014-03-11 CVE-2013-6941 Unspecified vulnerability in Citrix Netscaler Application Delivery Controller Firmware
Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 allows users to "breakout" of the shell via unknown vectors.
network
low complexity
citrix
critical
10.0
2013-09-12 CVE-2013-2940 Security vulnerability in Citrix Cloudportal Services Manager 10.0
Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, a different vulnerability than other CVEs listed in CTX137162.
network
low complexity
citrix
critical
10.0
2013-09-12 CVE-2013-2939 Security vulnerability in Citrix Cloudportal Services Manager 10.0
Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, a different vulnerability than other CVEs listed in CTX137162.
network
low complexity
citrix
critical
10.0
2013-09-12 CVE-2013-2938 Security vulnerability in Citrix Cloudportal Services Manager 10.0
Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, a different vulnerability than other CVEs listed in CTX137162.
network
low complexity
citrix
critical
10.0
2013-09-12 CVE-2013-2937 Information Disclosure vulnerability in Citrix Cloudportal Services Manager 10.0
Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, related to debugging messages, a different vulnerability than other CVEs listed in CTX137162.
network
low complexity
citrix
critical
10.0
2013-09-12 CVE-2013-2936 Security vulnerability in Citrix Cloudportal Services Manager 10.0
Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, a different vulnerability than other CVEs listed in CTX137162.
network
low complexity
citrix
critical
10.0
2013-09-12 CVE-2013-2935 Security vulnerability in Citrix Cloudportal Services Manager 10.0
Unspecified vulnerability in Citrix CloudPortal Services Manager (aka Cortex) 10.0 before Cumulative Update 3 has unknown impact and attack vectors, a different vulnerability than other CVEs listed in CTX137162.
network
low complexity
citrix
critical
10.0