VYPR
Medium severity6.5NVD Advisory· Published Sep 18, 2020· Updated Jun 17, 2026

CVE-2020-8200

CVE-2020-8200

Description

Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary files from that server.

Affected products

4
  • cpe:2.3:a:citrix:storefront_server:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:citrix:storefront_server:*:*:*:*:*:*:*:*range: <2006
    • cpe:2.3:a:citrix:storefront_server:*:*:*:*:ltsr:*:*:*range: >=3.0,<3.0.8001
    • (no CPE)range: <1912.0.1000
  • Citrix/StoreFront Serverdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.