CVE-2023-24491
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
A vulnerability has been discovered in the Citrix Secure Access client for Windows
which, if exploited, could allow an attacker with access to an endpoint with Standard User Account that has the vulnerable client installed to escalate their local privileges to that of NT AUTHORITY\SYSTEM.
Affected (1)
Products: Citrix: Secure Access Client
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 23.5.1.3 |
| Running on/with | Platform Versions |
|---|---|
Microsoft Windows | All versions |
References (2)
Source: secure@citrix.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.