imPC@ndo IT

Tracker / CVE-2019-18177

CVE-2019-18177

Medium 6.5

In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.

Affected products and versions

citrix application_delivery_controller_firmware · … → 13.0-58.30
citrix gateway · … → 13.0-58.30

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References