imPC@ndo IT

Tracker / CVE-2020-8196

CVE-2020-8196

Exploited Medium 4.3

Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.

Affected products and versions

citrix application_delivery_controller_firmware · 10.5 → 10.5-70.18
citrix application_delivery_controller_firmware · 11.1 → 11.1-64.14
citrix application_delivery_controller_firmware · 12.0 → 12.0-63.21
citrix application_delivery_controller_firmware · 12.1 → 12.1-57.18
citrix application_delivery_controller_firmware · 13.0 → 13.0-58.30
citrix gateway_firmware · 13.0 → 13.0-58.30
citrix netscaler_gateway_firmware · 10.5 → 10.5-70.18
citrix netscaler_gateway_firmware · 11.1 → 11.1-64.14
citrix netscaler_gateway_firmware · 12.0 → 12.0-63.21
citrix netscaler_gateway_firmware · 12.1 → 12.1-57.18
citrix sd-wan_wanop · 10.2 → 10.2.7
citrix sd-wan_wanop · 11.0 → 11.0.3d
citrix sd-wan_wanop · 11.1 → 11.1.1a

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References