QID 378737

QID 378737: Citrix Application Delivery Controller (ADC) and Citrix Gateway Privilege Escalation Vulnerability (CTX564169)

Citrix ADC and Citrix Gateway provides a virtualization solution for application and desktop delivery to any device, over any network.

Citrix released a security advisory to address Privilege Escalation vulnerability in Citrix ADC and Citrix Gateway

Affected Versions:
Citrix ADC and Citrix Gateway versions before 23.5.2

A vulnerability has been discovered in the Citrix Secure Access client for Ubuntu which, if exploited, could allow an attacker to remotely execute code if a victim user opens an attacker-crafted link and accepts further prompts.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 8 severity.
  • Solution
    Customers are advised to refer to CTX564169 for more information pertaining to this vulnerability.

    CVEs related to QID 378737

    Software Advisories
    Advisory ID Software Component Link
    CTX564169 URL Logo support.citrix.com/article/CTX564169/citrix-secure-access-client-for-ubuntu-security-bulletin-for-cve202324492