Configuration Disclosure in Citrix Command Center
CVE-2015-2682
Currently unrated
Key Information:
- Vendor
Citrix
- Status
- Vendor
- CVE Published:
- 26 March 2015
What is CVE-2015-2682?
The vulnerability in Citrix Command Center allows remote attackers to access sensitive configuration files, specifically credentials stored in the security database. By making a direct request to the endpoint conf/securitydbData.xml, unauthorized users can retrieve this critical information, potentially compromising the security of affected systems. Proper security measures and updates are essential to mitigate this risk.