Citrix
citrix
393 CVEs • 153 products
Products (153)
Click to collapseToggle
Products (153)
Click to collapse
CVEs (393)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Citrix 2Netscaler Application Delivery Controller Netscaler GatewayJun 17, 2026 Jan 17, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Improper Restriction of Operations within the Bounds of a Memory Buffer in NetScaler ADC and NetScaler Gateway allows Unauthenticated Denial of Service and Out-Of-Bounds Memory Read |
1Citrix 2Netscaler Application Delivery Controller Netscaler GatewayJun 17, 2026 Jan 17, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Improper Control of Generation of Code ('Code Injection') in NetScaler ADC and NetScaler Gateway allows an attacker with access to NSIP, CLIP or SNIP with management interface to perform Authenticated (low privileged) re...Show more |
1Citrix 2Netscaler Application Delivery Controller Netscaler GatewayJun 17, 2026 Oct 27, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Denial of Service in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA Virtual Server |
1Citrix 2Netscaler Application Delivery Controller Netscaler GatewayJun 17, 2026 Oct 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server. |
1Citrix 2Netscaler Application Delivery Controller Netscaler GatewayJun 17, 2026 Jul 19, 2023 N/A· v4 8.0 HIGH· v3 N/A· v2 Privilege Escalation to root administrator (nsroot)
|
1Citrix 2Netscaler Application Delivery Controller Netscaler GatewayJun 17, 2026 Jul 19, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Reflected Cross-Site Scripting (XSS)
|
1Citrix 2Netscaler Application Delivery Controller Netscaler GatewayJun 17, 2026 Jul 19, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Unauthenticated remote code execution |
A vulnerability has been discovered in the Citrix Secure Access client for Ubuntu which, if exploited, could allow an attacker to remotely execute code if a victim user opens an attacker-crafted link and accepts further...Show more |
A vulnerability has been discovered in the Citrix Secure Access client for Windows which, if exploited, could allow an attacker with access to an endpoint with Standard User Account that has the vulnerable client ins...Show more |
1Citrix 2Linux Virtual Delivery Agent Virtual Apps And DesktopsJun 17, 2026 Jul 10, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Users with only access to launch VDA applications can launch an unauthorized desktop
|
1Citrix 1Sharefile Storage Zones Controller Jun 17, 2026 Jul 10, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, could allow an unauthenticated attacker to remotely compromise the customer-managed ShareFile storage zo...Show more |
1Citrix 2Application Delivery Controller GatewayJun 17, 2026 Jul 10, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Cross site scripting vulnerability in Citrix ADC and Citrix Gateway in allows and attacker to perform cross site scripting |
1Citrix 2Application Delivery Controller GatewayJun 17, 2026 Jul 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Arbitrary file read in Citrix ADC and Citrix Gateway |
A vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious local user being able to gain access to the Citrix Virtual Apps and Desktops session of another user who...Show more |
Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix Workspace app. |
A malicious user can cause log files to be written to a directory that they do not have permission to write to. |
A vulnerability has been identified that, if exploited, could result in a local user elevating their privilege level to NT AUTHORITY\SYSTEM on a Citrix Virtual Apps and Desktops Windows VDA. |
1Citrix 2Application Delivery Controller GatewayJun 17, 2026 Jan 26, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Unauthenticated denial of service |
1Citrix 2Application Delivery Controller GatewayJun 17, 2026 Jan 26, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Authenticated denial of service |
1Citrix 2Application Delivery Controller Firmware GatewayJun 17, 2026 Dec 26, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before...Show more |