Showing 4 vulnerabilities on this page for Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance

Signals CISA KEV Ransomware Nuclei
Citrix vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Citrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability

Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.

CVSS4.3v3.1EPSS26.3%PoCs1SignalsListed in CISA KEVKnown ransomware useNo Nuclei templatesSTIX

Citrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability

Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.

CWE-20CWE-22Jul 10, 2020
CVSS6.5v3.1EPSS33.3%PoCs1SignalsListed in CISA KEVKnown ransomware useNo Nuclei templatesSTIX

Citrix ADC, Gateway, and SD-WAN WANOP Appliance Authorization Bypass Vulnerability

Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows unauthenticated access to certain URL endpoints.

CWE-284CWE-287CWE-862Jul 10, 20201 related artifact
CVSS6.5v3.1EPSS88.4%PoCs5SignalsListed in CISA KEVNo known ransomware use1 Nuclei templateSTIX

Citrix ADC, Gateway, and SD-WAN WANOP Appliance Code Execution Vulnerability

An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. They allow Directory Traversal.

CWE-22Dec 27, 20191 related artifact
CVSS9.8v3.1EPSS>99.9%PoCs49SignalsListed in CISA KEVKnown ransomware use1 Nuclei templateSTIX