Privilege Escalation on the system running a vulnerable version of Citrix Workspace app for Windows
CVE-2023-24485
7.8HIGH
Key Information:
- Vendor
- Citrix
- Vendor
- CVE Published:
- 16 February 2023
Summary
A vulnerability exists in the Citrix Workspace App for Windows that allows a standard user to execute operations with elevated SYSTEM privileges. This could potentially lead to unauthorized access and manipulation of sensitive system settings and data, posing significant security risks. Users of this application should promptly apply available patches to mitigate the risks associated with this vulnerability.
Affected Version(s)
Citrix Workspace App for Windows Citrix Workspace App versions < 2212
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved