Vulnerabilities > Citrix > Workspace > High

DATE CVE VULNERABILITY TITLE RISK
2024-09-11 CVE-2024-7889 Unspecified vulnerability in Citrix Workspace
Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
local
low complexity
citrix
7.3
2024-09-11 CVE-2024-7890 Unspecified vulnerability in Citrix Workspace
Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
local
low complexity
citrix
7.3
2024-09-10 CVE-2024-42423 Incorrect Authorization vulnerability in Citrix Workspace 23.9.0.24.4
Citrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogin.
local
low complexity
citrix CWE-863
7.1
2024-07-10 CVE-2024-6148 Unspecified vulnerability in Citrix Workspace
Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5
network
low complexity
citrix
8.8
2023-02-16 CVE-2023-24485 Incorrect Authorization vulnerability in Citrix Workspace 1912/2105/2203.1
Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix Workspace app.
local
low complexity
citrix CWE-863
7.8
2022-02-09 CVE-2022-21825 Unspecified vulnerability in Citrix Workspace
An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection installed that can allow an attacker to perform local privilege escalation.
local
low complexity
citrix
7.8
2021-05-27 CVE-2021-22907 Unspecified vulnerability in Citrix Workspace
An improper access control vulnerability exists in Citrix Workspace App for Windows potentially allows privilege escalation in CR versions prior to 2105 and 1912 LTSR prior to CU4.
local
low complexity
citrix
7.8
2020-07-24 CVE-2020-8207 Improper Authentication vulnerability in Citrix Workspace 1912/2002
Improper access control in Citrix Workspace app for Windows 1912 CU1 and 2006.1 causes privilege escalation and code execution when the automatic updater service is running.
network
low complexity
citrix CWE-287
8.8