SSL/TLS Server Impersonation Vulnerability in Citrix Online Plug-in and Receiver
CVE-2009-3936
Currently unrated
Key Information:
- Vendor
Citrix
- Vendor
- CVE Published:
- 13 November 2009
What is CVE-2009-3936?
An unspecified vulnerability in Citrix Online Plug-in and Receiver allows remote attackers to impersonate the SSL/TLS server. This can be achieved by using a crafted certificate, enabling the attacker to bypass authentication protocols. Affected versions include multiple releases across Windows and Mac platforms, posing a significant risk to users who rely on Citrix for secure connections. It is crucial to update the affected products to prevent potential exploitation.