SSL/TLS Server Impersonation Vulnerability in Citrix Online Plug-in and Receiver
CVE-2009-3936

Currently unrated

What is CVE-2009-3936?

An unspecified vulnerability in Citrix Online Plug-in and Receiver allows remote attackers to impersonate the SSL/TLS server. This can be achieved by using a crafted certificate, enabling the attacker to bypass authentication protocols. Affected versions include multiple releases across Windows and Mac platforms, posing a significant risk to users who rely on Citrix for secure connections. It is crucial to update the affected products to prevent potential exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.