Medium severity6.5NVD Advisory· Published Sep 18, 2020· Updated Jun 17, 2026
CVE-2020-8200
CVE-2020-8200
Description
Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary files from that server.
Affected products
4cpe:2.3:a:citrix:storefront_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:citrix:storefront_server:*:*:*:*:*:*:*:*range: <2006
- cpe:2.3:a:citrix:storefront_server:*:*:*:*:ltsr:*:*:*range: >=3.0,<3.0.8001
- (no CPE)range: <1912.0.1000
- Citrix/StoreFront Serverdescription
Patches
Vulnerability mechanics
References
1- support.citrix.com/article/CTX277455nvdVendor Advisory
News mentions
0No linked articles in our index yet.