Unrated severityNVD Advisory· Published Dec 20, 2005· Updated Jun 16, 2026
CVE-2005-4412
CVE-2005-4412
Description
Citrix Program Neighborhood client before 9.150 caches the user password in plaintext in the GUI while asterisks are used to visually obfuscate the password, which allows attackers with access to the session to obtain the password by using a tool to directly access the field.
Affected products
2cpe:2.3:a:citrix:program_neighborhood_client:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:citrix:program_neighborhood_client:*:*:*:*:*:*:*:*range: <=9.1
- (no CPE)range: <9.150
Patches
Vulnerability mechanics
References
2- securitytracker.com/idnvdExploit
- support.citrix.com/article/CTX108108nvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.