Receiver
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-11634 | Cri | 0.82 | 9.8 | 0.08 | KEV | May 22, 2019 | Citrix Workspace App before 1904 for Windows has Incorrect Access Control. | |
| CVE-2012-4603 | Hig | 0.51 | 7.8 | 0.07 | Jan 10, 2020 | Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver. | ||
| CVE-2019-18910 | Med | 0.44 | 6.8 | 0.01 | Nov 22, 2019 | The Citrix Receiver wrapper function does not safely handle user supplied input, which may be leveraged by an attacker to inject commands that will execute with local user privileges. |
- risk 0.82cvss 9.8epss 0.08
Citrix Workspace App before 1904 for Windows has Incorrect Access Control.
- risk 0.51cvss 7.8epss 0.07
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
- risk 0.44cvss 6.8epss 0.01
The Citrix Receiver wrapper function does not safely handle user supplied input, which may be leveraged by an attacker to inject commands that will execute with local user privileges.