Privilege Escalation on the system running a vulnerable version of Citrix Workspace app for Windows
CVE-2023-24485

7.8HIGH

Key Information:

Vendor
Citrix
Vendor
CVE Published:
16 February 2023

Summary

A vulnerability exists in the Citrix Workspace App for Windows that allows a standard user to execute operations with elevated SYSTEM privileges. This could potentially lead to unauthorized access and manipulation of sensitive system settings and data, posing significant security risks. Users of this application should promptly apply available patches to mitigate the risks associated with this vulnerability.

Affected Version(s)

Citrix Workspace App for Windows Citrix Workspace App versions < 2212

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.