← Back

CVE-2024-8069

nvd nist
Published: Nov 12, 2024Modified: Oct 24, 2025CISA KEV

JSON object

Loading...
5.1
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: secure@citrix.com (Secondary)

Description

Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server

Affected (17)

1 product
Session Recording
Configuration A
17 vulnerable
Vulnerable SoftwareAffected Versions
Citrix
Before 2407
Version 1912
Version 1912 cu1
Version 1912 cu2
Version 1912 cu3
Version 1912 cu4
Version 1912 cu5
Version 1912 cu6
Version 1912 cu7
Version 1912 cu8
Version 2203
Version 2203 cu1
Version 2203 cu2
Version 2203 cu3
Version 2203 cu4
Version 2402
Version 2407

Timeline

No history available yet.