| CVE-2016-9111 |
medium |
6.8 |
7.8 |
EXP |
|
citrix |
10y ago |
Incorrect access control mechanisms in Citrix Receiver Desktop Lock 4.5 allow an attacker to bypass the authentication requirement by leveraging physical access to a VDI for temporary disconnection o… |
| CVE-2015-2841 |
medium |
— |
6.0 |
EXP |
|
citrix |
11y ago |
Citrix NetScaler AppFirewall, as used in NetScaler 10.5, allows remote attackers to bypass intended firewall restrictions via a crafted Content-Type header, as demonstrated by the application/octet-s… |
| CVE-2015-2838 |
medium |
— |
7.8 |
EXP |
|
citrix |
11y ago |
Cross-site request forgery (CSRF) vulnerability in Nitro API in Citrix NetScaler before 10.5 build 52.3nc allows remote attackers to hijack the authentication of administrators for requests that exec… |
| CVE-2015-2682 |
medium |
— |
6.0 |
EXP |
|
citrix |
11y ago |
Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 allows remote attackers to obtain credentials via a direct request to conf/securitydbData.xml. |
| CVE-2014-1664 |
medium |
— |
6.0 |
EXP |
|
citrix |
13y ago |
The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain user IDs, meeting details, and authentication tokens … |
| CVE-2011-2882 |
critical |
— |
10.0 |
EXP |
|
citrix |
15y ago |
Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.0 before 9.0-70.5, and 9.1 before 9.1-96.4 allows … |
| CVE-2010-4566 |
critical |
— |
10.0 |
EXP |
|
citrix |
16y ago |
The web authentication form in the NT4 authentication component in Citrix Access Gateway Enterprise Edition 9.2-49.8 and earlier, and the NTLM authentication component in Access Gateway Standard and … |