Vulnerabilities > Citrix > Xenapp > High

DATE CVE VULNERABILITY TITLE RISK
2021-08-05 CVE-2021-22928 Unspecified vulnerability in Citrix Virtual Apps and Desktops, Xenapp and Xendesktop
A vulnerability has been identified in Citrix Virtual Apps and Desktops that could, if exploited, allow a user of a Windows VDA that has either Citrix Profile Management or Citrix Profile Management WMI Plugin installed to escalate their privilege level on that Windows VDA to SYSTEM.
local
low complexity
citrix
7.2
2016-08-19 CVE-2016-6493 7PK - Security Features vulnerability in Citrix Xenapp and Xendesktop
Citrix XenApp 6.x before 6.5 HRP07 and 7.x before 7.9 and Citrix XenDesktop before 7.9 might allow attackers to weaken an unspecified security mitigation via vectors related to memory permission.
network
low complexity
citrix CWE-254
7.5
2009-07-14 CVE-2009-2453 Permissions, Privileges, and Access Controls vulnerability in Citrix Presentation Server and Xenapp
Citrix XenApp (formerly Presentation Server) 4.5 Hotfix Rollup Pack 3 does not apply an access policy when it is defined with the Access Gateway Advanced Edition filters, which allows attackers to bypass intended access restrictions via unknown vectors.
network
low complexity
citrix CWE-264
7.5