imPC@ndo IT

Tracker / CVE-2024-2049

CVE-2024-2049

Medium 6.5

Server-Side Request Forgery (SSRF) in Citrix SD-WAN Standard/Premium Editions on or after 11.4.0 and before 11.4.4.46 allows an attacker to disclose limited information from the appliance via Access to management IP.

Affected products and versions

citrix sd-wan_1000_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_1100_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_110_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_2000_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_2100_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_210_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_4000_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_400_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_4100_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_410_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_5100_firmware · 11.4.0 → 11.4.4.46
citrix sd-wan_6100_firmware · 11.4.0 → 11.4.4.46

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References