CVE-2018-6811
Summary
| CVE | CVE-2018-6811 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-03-06 20:29:00 UTC |
| Updated | 2018-03-26 17:39:00 UTC |
| Description | Multiple cross-site scripting (XSS) vulnerabilities in Citrix NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to inject arbitrary web script or HTML via the Citrix NetScaler interface. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Citrix NetScaler Application Delivery Controller and NetScaler Gateway Multiple Security Updates | CONFIRM | support.citrix.com | Patch, Vendor Advisory |
| Citrix NetScaler ADC and NetScaler Gateway Multiple Bugs Let Remote Users Download Files, Traverse the Directory, Conduct Cross-Site Scripting Attacks and Let Remote Authenticated Users Gain Root Privileges - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.