imPC@ndo IT

Tracker / CVE-2009-2213

CVE-2009-2213

Medium 6.5

The default configuration of the Security global settings on the Citrix NetScaler Access Gateway appliance with Enterprise Edition firmware 9.0, 8.1, and earlier specifies Allow for the Default Authorization Action option, which might allow remote authenticated users to bypass intended access restrictions.

Affected products and versions

citrix netscaler_access_gateway
citrix netscaler_access_gateway_firmware
citrix netscaler_access_gateway_firmware · … → 8.1

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References