Improper Validation of TLS Certificates in Citrix iOS Receiver
CVE-2016-5433
6.1MEDIUM
Summary
Citrix iOS Receiver versions prior to 7.0 are susceptible to a vulnerability that allows attackers to manipulate the validation process of TLS certificates. This improper validation could enable malicious entities to bypass security measures, leading to unauthorized access and potential data breaches. Users of affected versions should upgrade immediately to mitigate risks associated with this vulnerability.
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved