Medium severity6.1NVD Advisory· Published Sep 18, 2020· Updated Jun 17, 2026
CVE-2020-8245
CVE-2020-8245
Description
Improper Input Validation on Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix ADC and NetScaler Gateway 11.1 before 11.1-65.12, Citrix SD-WAN WANOP 11.2 before 11.2.1a, Citrix SD-WAN WANOP 11.1 before 11.1.2a, Citrix SD-WAN WANOP 11.0 before 11.0.3f, Citrix SD-WAN WANOP 10.2 before 10.2.7b leads to an HTML Injection attack against the SSL VPN web portal.
Affected products
4- Citrix/ADC and Gatewaydescription
- Range: <13.0-64.35, <12.1-58.15, <11.1-65.12
- Range: <13.0-64.35, <12.1-58.15, <12.1-55.187, <11.1-65.12
- Range: <11.2.1a, <11.1.2a, <11.0.3f, <10.2.7b
Patches
Vulnerability mechanics
References
1- support.citrix.com/article/CTX281474nvdVendor Advisory
News mentions
0No linked articles in our index yet.