Privilege Escalation Vulnerability in Citrix Gateway Plug-in for Windows
CVE-2020-8257

9.8CRITICAL

Key Information:

Vendor
Citrix
Vendor
CVE Published:
14 December 2020

Summary

The Citrix Gateway Plug-in for Windows contains an improper privilege management flaw that allows attackers to escalate their privileges. This vulnerability affects versions prior to 13.0-61.48 and 12.1-58.15, exposing users to potential unauthorized access and control over sensitive information and systems. Organizations using these versions should prioritize updates to mitigate risks related to this security issue.

Affected Version(s)

Citrix Gateway Plug-in for Windows Versions before and including 13.0-61.48 and 12.1-58.15

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.