← Back

Storefront Server

storefront_server

Vendor: Citrix • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Citrix
1Storefront Server
Nov 21, 2024
Apr 13, 2022
N/A· v4
6.1 MEDIUM· v3
2.6 LOW· v2
Cross-site Scripting (XSS) vulnerability in Citrix StoreFront affects version 1912 before CU5 and version 3.12 before CU9
1Citrix
1Storefront Server
Nov 21, 2024
Sep 18, 2020
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary files from that serv...Show more
Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary files from that server.Show less
1Citrix
1Storefront Server
Nov 6, 2025
Aug 29, 2019
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Citrix StoreFront Server before 1903, 7.15 LTSR before CU4 (3.12.4000), and 7.6 LTSR before CU8 (3.0.8000) allows XXE attacks.