Critical severity9.8NVD Advisory· Published Oct 23, 2018· Updated Jun 17, 2026
CVE-2018-17446
CVE-2018-17446
Description
A SQL Injection issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
Affected products
4cpe:2.3:a:citrix:netscaler_sd-wan:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:citrix:netscaler_sd-wan:*:*:*:*:*:*:*:*range: >=9.3.0,<=9.3.6
- (no CPE)range: 9.3.x before 9.3.6, 10.0.x before 10.0.4
cpe:2.3:a:citrix:sd-wan:10.1.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:citrix:sd-wan:10.1.0:*:*:*:*:*:*:*
- (no CPE)range: 10.1.0, 9.3.x before 9.3.6, 10.0.x before 10.0.4
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/105711nvdThird Party AdvisoryVDB Entry
- support.citrix.com/article/CTX236992nvdVendor Advisory
News mentions
0No linked articles in our index yet.