CVE-2019-12986
Citrix SD-WAN and NetScaler Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Record summary
CVE-2019-12986 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.
Description
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of 6).
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Dec 5, 2023 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
SD-WAN and NetScalerBrowse Citrix / SD-WAN and NetScaler | VulnCheck | Version data not supplied | |
Nuclei templates
1ProjectDiscoveryCRITICALCitrix SD-WAN Center - Remote Command InjectionCVSS 9.8
Citrix SD-WAN Center is susceptible to remote command injection via the trace_route function in DiagnosticsController, which does not sufficiently validate or sanitize HTTP request parameter values used to construct a shell command. An attacker can trigger this vulnerability by routing traffic through the Collector controller and supplying a crafted value for ipAddress, thereby potentially being able to obtain sensitive information, modify data, and/or execute unauthorized operations.
Impact
Successful exploitation of this vulnerability can lead to unauthorized access, data exfiltration, and potential compromise of the entire SD-WAN infrastructure.
Remediation
Apply the necessary patches or updates provided by Citrix to mitigate the vulnerability.
Source: ProjectDiscovery