Citrix
citrix
393 CVEs • 153 products
Products (153)
Click to collapseToggle
Products (153)
Click to collapse
CVEs (393)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Citrix DebianXen3Debian Linux XenXenserverNov 21, 2024 Dec 8, 2018 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes. |
1Citrix 1Netscaler Gateway Firmware Nov 21, 2024 Oct 24, 2018 N/A· v4 4.8 MEDIUM· v3 3.5 LOW· v2 Citrix NetScaler Gateway 10.5.x before 10.5.69.003, 11.1.x before 11.1.59.004, 12.0.x before 12.0.58.7, and 12.1.x before 12.1.49.1 has XSS. |
* Lack of authentication in Citrix Xen Mobile through 10.8 allows low-privileged local users to execute system commands as root by making requests to private services listening on ports 8000, 30000 and 30001. NOTE: the...Show more |
* Xen Mobile through 10.8.0 includes a service listening on port 5001 within its firewall that accepts unauthenticated input. If this service is supplied with raw serialised Java objects, it deserialises them back into J...Show more |
1Citrix 2Netscaler Sd Wan Sd WanNov 21, 2024 Oct 23, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An Incorrect Access Control issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4. |
1Citrix 2Netscaler Sd Wan Sd WanNov 21, 2024 Oct 23, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An Information Exposure Through Log Files issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4. |
1Citrix 2Netscaler Sd Wan Sd WanNov 21, 2024 Oct 23, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A SQL Injection issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4. |
1Citrix 2Netscaler Sd Wan Sd WanNov 21, 2024 Oct 23, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A Command Injection issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4. |
1Citrix 2Netscaler Sd Wan Sd WanNov 21, 2024 Oct 23, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A Directory Traversal issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4. |
1Citrix 1Sharefile Storagezones Controller Nov 21, 2024 Sep 26, 2018 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 Citrix ShareFile StorageZones Controller before 5.4.2 has Information Exposure Through an Error Message. |
1Citrix 1Sharefile Storagezones Controller Nov 21, 2024 Sep 26, 2018 N/A· v4 3.1 LOW· v3 3.5 LOW· v2 Citrix ShareFile StorageZones Controller before 5.4.2 allows Directory Traversal. |
Citrix XenServer 7.1 and newer allows Directory Traversal. |
4Citrix DebianQemu+1 more9Debian Linux Enterprise Linux DesktopEnterprise Linux Server+6 moreNov 21, 2024 Jul 27, 2018 N/A· v4 9.9 CRITICAL· v3 9.0 HIGH· v2 A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update its display after a VGA operation is perf...Show more |
5Citrix DebianQemu+2 more10Debian Linux Enterprise Linux DesktopEnterprise Linux Server+7 moreNov 21, 2024 Jul 27, 2018 N/A· v4 9.9 CRITICAL· v3 9.0 HIGH· v2 Quick emulator (QEMU) before 2.8 built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to an out-of-bounds access issue. The issue could occur while copying VGA data in cirrus_bitblt_cputovideo. A privileged...Show more |
5Citrix DebianQemu+2 more10Debian Linux Enterprise Linux DesktopEnterprise Linux Server+7 moreNov 21, 2024 Jul 3, 2018 N/A· v4 9.1 CRITICAL· v3 9.0 HIGH· v2 Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue. It could occur while copying VGA data via bitblt copy in backward mode. A privileged user inside...Show more |
6Canonical CitrixDebian+3 more14Core I3 Core I5Core I7+11 moreNov 21, 2024 Jun 21, 2018 N/A· v4 5.6 MEDIUM· v3 4.7 MEDIUM· v2 System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculative execution side ch...Show more |
There is a Hazelcast Library Java Deserialization Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3. |
There is an XML External Entity (XXE) Processing Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3. |
There is a Sensitive Data Leakage issue in Citrix XenMobile Server 10.7 before RP3. |
There are Open Redirect Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3. |