KLA10522
Multiple vulnerabilities in Citrix CC

Updated: 06/18/2020
Detect date
?
03/26/2015
Severity
?
Critical
Description

Multiple serious vulnerabilities have been found in Citrix Controle Center. Malicious users can exploit these vulnerabilities to execute arbitrary code or obtain sensitive information.

Below is a complete list of vulnerabilities

  1. Improper access restrictions can be exploited remotely via an unknown vectors;
  2. An unknwn vulnerability can be exploited remotely via a specially designed request.
Affected products

Citrix Command Center 5.1 versions earlier than Build 35.4
Citrix Command Center 5.2 versions earlier than Build 42.7

Solution

Update to the latest version

Original advisories

Citrix bulletin

Impacts
?
ACE 
[?]

OSI 
[?]
Related products
Citrix Command Center
CVE-IDS
?
CVE-2015-26837.5Critical
CVE-2015-26825.0Critical
Exploitation

The following public exploits exists for this vulnerability:

https://www.exploit-db.com/exploits/36441

Find out the statistics of the vulnerabilities spreading in your region