← Back

CVE-2024-8068

nvd nist
Published: Nov 12, 2024Modified: Oct 24, 2025CISA KEV

JSON object

Loading...
5.1
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: secure@citrix.com (Secondary)

Description

Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain

Affected (18)

1 product
Session Recording
Configuration A
18 vulnerable
Vulnerable SoftwareAffected Versions
Citrix
Before 2407
Version 1912
Version 1912 cu1
Version 1912 cu2
Version 1912 cu3
Version 1912 cu4
Version 1912 cu5
Version 1912 cu6
Version 1912 cu7
Version 1912 cu8
Version 2203
Version 2203 cu1
Version 2203 cu2
Version 2203 cu3
Version 2203 cu4
Version 2203 cu5
Version 2402
Version 2407

Timeline

No history available yet.