imPC@ndo EN

Vulnerabilità Citrix

393 CVE

CVE-2016-9379
Alta 7.9

The pygrub boot loader emulator in Xen, when S-expression output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via string quotes and S-expressions in the bootloader configuration file.

citrix xenserver · xen xen
0.00EPSS
CVE-2012-3495
Media 6.1

The physdev_get_free_pirq hypercall in arch/x86/physdev.c in Xen 4.1.x and Citrix XenServer 6.0.2 and earlier uses the return value of the get_free_pirq function as an array index without checking that the return value indicates an error, which allows guest OS…

citrix xenserver · xen xen
0.00EPSS
CVE-2005-4412
Bassa 2.1

Citrix Program Neighborhood client before 9.150 caches the user password in plaintext in the GUI while asterisks are used to visually obfuscate the password, which allows attackers with access to the session to obtain the password by using a tool to directly a…

citrix program_neighborhood_client
0.00EPSS
CVE-2017-12137
Alta 8.8

arch/x86/mm.c in Xen allows local PV guest OS users to gain host OS privileges via vectors related to map_grant_ref.

citrix xenserver · debian debian_linux · xen xen
0.00EPSS
CVE-2012-3498
Media 5.6

PHYSDEVOP_map_pirq in Xen 4.1 and 4.2 and Citrix XenServer 6.0.2 and earlier allows local HVM guest OS kernels to cause a denial of service (host crash) and possibly read hypervisor or guest memory via vectors related to a missing range check of map->index.

citrix xenserver · xen xen
0.00EPSS
CVE-2012-3494
Bassa 2.1

The set_debugreg hypercall in include/asm-x86/debugreg.h in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlier, when running on x86-64 systems, allows local OS guest users to cause a denial of service (host crash) by writing to the reserved bits of …

citrix xenserver · xen xen
0.00EPSS
CVE-2016-9385
Media 6.0

The x86 segment base write emulation functionality in Xen 4.4.x through 4.7.x allows local x86 PV guest OS administrators to cause a denial of service (host crash) by leveraging lack of canonical address checks.

citrix xenserver · xen xen
0.00EPSS
CVE-2016-10024
Media 6.0

Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kernel operations.

citrix xenserver · xen xen
0.00EPSS
CVE-2016-9380
Alta 7.5

The pygrub boot loader emulator in Xen, when nul-delimited output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via NUL bytes in the bootloader configuration file.

citrix xenserver · xen xen
0.00EPSS
CVE-2024-8535
Alta 8.1

Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources …

citrix netscaler_application_delivery_controller · citrix netscaler_gateway
0.00EPSS
CVE-2020-8299
Media 6.5

Citrix ADC and Citrix/NetScaler Gateway 13.0 before 13.0-76.29, 12.1-61.18, 11.1-65.20, Citrix ADC 12.1-FIPS before 12.1-55.238, and Citrix SD-WAN WANOP Edition before 11.4.0, 11.3.2, 11.3.1a, 11.2.3a, 11.1.2c, 10.2.9a suffers from uncontrolled resource consum…

citrix application_delivery_controller_firmware · citrix gateway · citrix netscaler_gateway · citrix sd-wan_wanop
0.00EPSS
CVE-2012-3496
Media 4.7

XENMEM_populate_physmap in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlier, when translating paging mode is not used, allows local PV OS guest kernels to cause a denial of service (BUG triggered and host crash) via invalid flags such as MEMF_popu…

citrix xenserver · xen xen
0.00EPSS
CVE-2016-5433
Media 6.1

Citrix iOS Receiver before 7.0 allows attackers to cause TLS certificates to be incorrectly validated via unspecified vectors.

citrix ios_receiver
0.00EPSS
CVE-2026-10816
Alta 7.5

Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management IP or SNIP with management access is enabled

citrix netscaler_application_delivery_controller · citrix netscaler_gateway
0.00EPSS
CVE-2021-22932
Alta 7.5

An issue has been identified in the CTX269106 mitigation tool for Citrix ShareFile storage zones controller which causes the ShareFile file encryption option to become disabled if it had previously been enabled. Customers are only affected by this issue if the…

citrix sharefile_storagezones_controller
0.00EPSS
CVE-2026-10817
Alta 7.5

Insufficient input validation leading to memory overread in NetScaler ADC and NetScaler Gateway if the TCP TimeStamp is enabled in TCP Profile and is associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScaler

citrix netscaler_application_delivery_controller · citrix netscaler_gateway
0.00EPSS
CVE-2018-19965
Media 5.6

An issue was discovered in Xen through 4.11.x allowing 64-bit PV guest OS users to cause a denial of service (host OS crash) because #GP[0] can occur after a non-canonical address is passed to the TLB flushing code. NOTE: this issue exists because of an incorr…

citrix xenserver · debian debian_linux · xen xen
0.00EPSS
CVE-2018-19962
Alta 7.8

An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because small IOMMU mappings are unsafely combined into larger ones.

citrix xenserver · debian debian_linux · xen xen
0.00EPSS
CVE-2018-19961
Alta 7.8

An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.

citrix xenserver · debian debian_linux · xen xen
0.00EPSS
CVE-2012-5512
Bassa 3.2

Array index error in the HVMOP_set_mem_access handler in Xen 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) or obtain sensitive information via unspecified vectors.

citrix xenserver
0.00EPSS
CVE-2024-6148
Alta 8.8

Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5

citrix workspace
0.00EPSS
CVE-2016-6258
Alta 8.8

The PV pagetable code in arch/x86/mm.c in Xen 4.7.x and earlier allows local 32-bit PV guest OS administrators to gain host OS privileges by leveraging fast-paths for updating pagetable entries.

citrix xenserver · xen xen
0.00EPSS
CVE-2020-8199
Alta 7.8

Improper access control in Citrix ADC Gateway Linux client versions before 1.0.0.137 results in local privilege escalation to root.

citrix gateway_plug-in_for_linux
0.00EPSS
CVE-2024-6286
Alta 7.8

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

citrix workspace
0.00EPSS
CVE-2024-2049
Media 6.5

Server-Side Request Forgery (SSRF) in Citrix SD-WAN Standard/Premium Editions on or after 11.4.0 and before 11.4.4.46 allows an attacker to disclose limited information from the appliance via Access to management IP.

citrix sd-wan_1000_firmware · citrix sd-wan_1100_firmware · citrix sd-wan_110_firmware · citrix sd-wan_2000_firmware · e altri 8
0.00EPSS