Command Execution Vulnerability in Citrix Virtual Apps and Desktops
CVE-2020-8269
Key Information:
- Vendor
Citrix
- Vendor
- CVE Published:
- 16 November 2020
What is CVE-2020-8269?
A vulnerability exists in Citrix Virtual Apps and Desktops that allows unprivileged Windows users on the Virtual Delivery Agent (VDA) to execute arbitrary commands with SYSTEM privileges. This issue affects multiple versions, including those prior to 2009, as well as specific hotfixes for the 1912 LTSR and LTSR versions 7.15 and 7.6. Proper updates and fixes are necessary to safeguard systems against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Citrix Virtual Apps and Desktops 2009, 1912 LTSRÂ CU1 hotfixes CTX285870 and CTX286120, 7.15 LTSR CU6 hotfix CTX285344 and 7.6 LTSR CU9
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved