Citrix
citrix
393 CVEs • 153 products
Products (153)
Click to collapseToggle
Products (153)
Click to collapse
CVEs (393)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Citrix 2Application Delivery Controller Firmware Gateway FirmwareJun 17, 2026 Dec 13, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Unauthenticated remote arbitrary code execution |
1Citrix 2Application Delivery Controller Firmware GatewayJun 17, 2026 Nov 8, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 User login brute force protection functionality bypass
|
1Citrix 2Application Delivery Controller Firmware GatewayJun 17, 2026 Nov 8, 2022 N/A· v4 9.6 CRITICAL· v3 N/A· v2 Remote desktop takeover via phishing
|
1Citrix 2Application Delivery Controller Firmware GatewayJun 17, 2026 Nov 8, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Unauthorized access to Gateway user capabilities
|
1Citrix 2Application Delivery Controller Firmware GatewayJun 17, 2026 Jul 28, 2022 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Unauthenticated redirection to a malicious website |
1Citrix 1Application Delivery Management Jun 17, 2026 Jun 16, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Temporary disruption of the ADM license service. The impact of this includes preventing new licenses from being issued or renewed by Citrix ADM. |
1Citrix 1Application Delivery Management Jun 17, 2026 Jun 16, 2022 N/A· v4 8.1 HIGH· v3 7.8 HIGH· v2 Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrator password at the next device reboot, allowing an attacker with ssh access to connect with the defau...Show more |
An improper privilege vulnerability has been discovered in Citrix Gateway Plug-in for Windows (Citrix Secure Access for Windows) <21.9.1.2 what could allow an attacker who has gained local access to a computer with Citri...Show more |
In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Directory Traversal vulnerability, leading to remote code execution. |
1Citrix 14Sd Wan 1000 Firmware Sd Wan 1100 FirmwareSd Wan 110 Firmware+11 moreJun 17, 2026 Apr 13, 2022 N/A· v4 2.7 LOW· v3 6.8 MEDIUM· v2 Hard-coded credentials allow administrators to access the shell via the SD-WAN CLI |
1Citrix 12Sd Wan 1000 Firmware Sd Wan 1100 FirmwareSd Wan 110 Firmware+9 moreJun 17, 2026 Apr 13, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Reflected cross site scripting (XSS) |
Cross-site Scripting (XSS) vulnerability in Citrix StoreFront affects version 1912 before CU5 and version 3.12 before CU9 |
Citrix XenMobile Server 10.12 through RP11, 10.13 through RP7, and 10.14 through RP4 allows Command Injection. |
In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remote code execution with root privileges. |
1Citrix 1Federated Authentication Service Jun 17, 2026 Mar 10, 2022 N/A· v4 4.4 MEDIUM· v3 1.9 LOW· v2 Citrix Federated Authentication Service (FAS) 7.17 - 10.6 causes deployments that have been configured to store a registration authority certificate's private key in a Trusted Platform Module (TPM) to incorrectly store t...Show more |
An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection installed that can allow an attacker to perform local privilege escalation. |
1Citrix 3Application Delivery Controller Firmware GatewaySd WanJun 17, 2026 Dec 7, 2021 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 An uncontrolled resource consumption vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 that could allow an attacker with access to NSIP or SNIP with management interface access to cause a tempora...Show more |
1Citrix 2Application Delivery Controller Firmware GatewayJun 17, 2026 Dec 7, 2021 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when configured as a VPN (Gateway) or AAA virtual server could allow an attacker to cause a temporary disrupt...Show more |
1Citrix 1Sharefile Storagezones Controller Jun 17, 2026 Sep 23, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Improper Access Control in Citrix ShareFile storage zones controller before 5.11.20 may allow an unauthenticated attacker to remotely compromise the storage zones controller. |
1Citrix 1Sharefile Storagezones Controller Jun 17, 2026 Aug 16, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An issue has been identified in the CTX269106 mitigation tool for Citrix ShareFile storage zones controller which causes the ShareFile file encryption option to become disabled if it had previously been enabled. Customer...Show more |