CVE-2013-6077

Citrix XenDesktop 7.0 - Policy Rule Permission Bypass

Title source: llm
STIX 2.1

Description

Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass intended restrictions.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
http://support.citrix.com/article/CTX138627
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/98890

Scores

EPSS 0.0015
EPSS Percentile 35.2%

Details

CWE
CWE-264
Status published
Products (1)
citrix/xendesktop 7.0
Published Nov 05, 2013
Tracked Since Feb 18, 2026