Vulnerabilities > Citrix > High

DATE CVE VULNERABILITY TITLE RISK
2002-08-12 CVE-2002-0504 Cross-Site Scripting vulnerability in Citrix Nfuse 1.5/1.51/1.6
Cross-site scripting vulnerability in Citrix NFuse 1.6 and earlier does not quote results from the getLastError method, which allows remote attackers to execute script in other clients via the NFuse_Application parameter to (1) launch.jsp or (2) launch.asp.
network
low complexity
citrix
7.5
2001-12-13 CVE-2001-1192 Unspecified vulnerability in Citrix ICA Client 6.1
Citrix Independent Computing Architecture (ICA) Client for Windows 6.1 allows remote malicious web sites to execute arbitrary code via a .ICA file, which is downloaded and automatically executed by the client.
network
low complexity
citrix
7.5
2001-11-21 CVE-2001-0908 Unspecified vulnerability in Citrix Metaframe 1.8
CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g.
network
low complexity
citrix
7.5