Vulnerabilities > Citrix > Xenapp > 6.5.0.0

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-13998 Information Exposure Through Discrepancy vulnerability in Citrix Xenapp 6.5.0.0
Citrix XenApp 6.5, when 2FA is enabled, allows a remote unauthenticated attacker to ascertain whether a user exists on the server, because the 2FA error page only occurs after a valid username is entered.
network
low complexity
citrix CWE-203
5.3
2016-08-19 CVE-2016-6493 7PK - Security Features vulnerability in Citrix Xenapp and Xendesktop
Citrix XenApp 6.x before 6.5 HRP07 and 7.x before 7.9 and Citrix XenDesktop before 7.9 might allow attackers to weaken an unspecified security mitigation via vectors related to memory permission.
network
low complexity
citrix CWE-254
critical
9.8