Improper Validation of TLS Certificates in Citrix iOS Receiver
CVE-2016-5433

6.1MEDIUM

Key Information:

Vendor
Citrix
Vendor
CVE Published:
17 June 2016

Summary

Citrix iOS Receiver versions prior to 7.0 are susceptible to a vulnerability that allows attackers to manipulate the validation process of TLS certificates. This improper validation could enable malicious entities to bypass security measures, leading to unauthorized access and potential data breaches. Users of affected versions should upgrade immediately to mitigate risks associated with this vulnerability.

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.