Описание
Cross-site request forgery (CSRF) vulnerability in the web-based administration console in Citrix Access Gateway before firmware 4.5.5 allows remote attackers to perform certain configuration changes as administrators.
Комментарий
Citrix Access Gateway is offered both as software or hardware.
Ссылки
- PatchVendor Advisory
- Patch
- Patch
- Patch
- PatchVendor Advisory
- Patch
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:citrix:access_gateway:4.5:*:advanced:*:*:*:*:*
cpe:2.3:a:citrix:access_gateway:4.5:*:standard:*:*:*:*:*
EPSS
Процентиль: 86%
0.02743
Низкий
7.6 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Cross-site request forgery (CSRF) vulnerability in the web-based administration console in Citrix Access Gateway before firmware 4.5.5 allows remote attackers to perform certain configuration changes as administrators.
EPSS
Процентиль: 86%
0.02743
Низкий
7.6 High
CVSS2
Дефекты
NVD-CWE-Other