Описание
Citrix Gateway 11.1, 12.0, and 12.1 has an Inconsistent Interpretation of HTTP Requests. NOTE: Citrix disputes the reported behavior as not a security issue. Citrix ADC only caches HTTP/1.1 traffic for performance optimization
Ссылки
- ExploitMailing ListThird Party Advisory
- Vendor Advisory
- ExploitMailing ListThird Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:o:citrix:gateway_firmware:11.1:*:*:*:*:*:*:*
cpe:2.3:o:citrix:gateway_firmware:12.0:*:*:*:*:*:*:*
cpe:2.3:o:citrix:gateway_firmware:12.1:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.00501
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-444
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
Citrix Gateway 11.1, 12.0, and 12.1 has an Inconsistent Interpretation of HTTP Requests.
EPSS
Процентиль: 65%
0.00501
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-444