VYPR
Medium severity6.5NVD Advisory· Published Sep 18, 2020· Updated Jun 17, 2026

CVE-2020-8200

CVE-2020-8200

Description

Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary files from that server.

Affected products

4
  • Citrix Systems/Storefront Servercpe-rescue4 versions
    (expand)+ 3 more
    • (no CPE)
    • (no CPE)range: <1912.0.1000
    • cpe:2.3:a:citrix:storefront_server:*:*:*:*:*:*:*:*range: <2006
    • cpe:2.3:a:citrix:storefront_server:*:*:*:*:ltsr:*:*:*range: >=3.0,<3.0.8001

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.