Arbitrary file read

CVE-2023-24487
6.3MEDIUM

Key Information

Vendor
Citrix
Status
Citrix Adc And Citrix Gateway
Vendor
CVE Published:
10 July 2023

Summary

Arbitrary file read in Citrix ADC and Citrix Gateway?

Affected Version(s)

Citrix ADC and Citrix Gateway  < 13.1-45.61

Citrix ADC and Citrix Gateway  < 13.0-90.11 

Citrix ADC and Citrix Gateway  < 12.1-65.35

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Risk change from: 7.5 to: 6.3 - (MEDIUM)

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database
.