Authentication Bypass in Citrix Receiver Desktop Lock 4.5
CVE-2016-9111
6.8MEDIUM
What is CVE-2016-9111?
Citrix Receiver Desktop Lock 4.5 contains an access control issue that can potentially allow attackers to bypass authentication through physical access methods. Specifically, when an attacker temporarily disconnects the LAN cable from a Virtual Desktop Infrastructure (VDI), they may gain unauthorized entry. Although the vendor has stated that they were unable to reproduce the issue during their investigation, it's crucial for organizations using this software to assess the potential risks and implement additional security measures to safeguard their environments.