Vulnerabilities > Citrix > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2002-08-12 | CVE-2002-0504 | Cross-Site Scripting vulnerability in Citrix Nfuse 1.5/1.51/1.6 Cross-site scripting vulnerability in Citrix NFuse 1.6 and earlier does not quote results from the getLastError method, which allows remote attackers to execute script in other clients via the NFuse_Application parameter to (1) launch.jsp or (2) launch.asp. | 7.5 |
2001-12-13 | CVE-2001-1192 | Unspecified vulnerability in Citrix ICA Client 6.1 Citrix Independent Computing Architecture (ICA) Client for Windows 6.1 allows remote malicious web sites to execute arbitrary code via a .ICA file, which is downloaded and automatically executed by the client. | 7.5 |
2001-11-21 | CVE-2001-0908 | Unspecified vulnerability in Citrix Metaframe 1.8 CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. | 7.5 |